I have no problem with the suggestion.

A few other observations:

1. FWIW: The reference to [Wang] is incomplete.

2. The references to the other papers use the websites of the authors or 
project websites. I would use more stable references.

3. Kathleen's affiliation is also outdated.

4. Is the update to RFC 7525 relevant given that there is an update of RFC 7525 
in progress (see 
https://datatracker.ietf.org/doc/html/draft-ietf-uta-rfc7525bis-01) and even 
near completion?

5. The title of the draft gives the impression that this update only refers to 
TLS 1.2 but later in the draft DTLS is also included via the reference to RFC 
7525. Should the title be changed to "Deprecating MD5 and SHA-1 signature 
hashes in TLS/DTLS 1.2"?

Ciao
Hannes

-----Original Message-----
From: Iot-directorate <iot-directorate-boun...@ietf.org> On Behalf Of Russ 
Housley
Sent: Wednesday, July 28, 2021 10:34 PM
To: Sean Turner <s...@sn3rd.com>; IETF TLS <tls@ietf.org>
Cc: iot-director...@ietf.org; draft-ietf-tls-md5-sha1-deprecate....@ietf.org; 
last-c...@ietf.org
Subject: Re: [Iot-directorate] [TLS] [Last-Call] Iotdir last call review of 
draft-ietf-tls-md5-sha1-deprecate-04

>   In Section 7.1.4.1: the following text is removed:

     If the client supports only the default hash and signature algorithms
     (listed in this section), it MAY omit the signature_algorithms
     extension.

>   Since it’s a MAY, I am a-okay with deleting. Anybody else see harm?

I don't see any harm.

Russ

--
Iot-directorate mailing list
iot-director...@ietf.org
https://www.ietf.org/mailman/listinfo/iot-directorate
IMPORTANT NOTICE: The contents of this email and any attachments are 
confidential and may also be privileged. If you are not the intended recipient, 
please notify the sender immediately and do not disclose the contents to any 
other person, use it for any purpose, or store or copy the information in any 
medium. Thank you.
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to