On 15/09/2022 14:23, Fries, Steffen wrote:
Hi Chris,

Based on the implementations in industry that I'm aware of, I would see TLS 1.2 
as mandatory and TLS 1.3 as optional. The take up of TLS 1.3 is not as fast and 
will take a while.


I agree.

There is an I-D in OPSAWG to update RADIUS for Encrypted DNS. It specifies RADIUS over TLS1.2 (RFC6614) and I do not know if and when the IETF will ever get round to updating that.

Other protocols have the same issue.

Tom Petch


Best regards
Steffen

From: Uta <uta-boun...@ietf.org> On Behalf Of Chris Lonvick
Sent: Montag, 12. September 2022 00:25
To: Uta@ietf.org
Subject: [Uta] Fwd: I-D Action: draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt

Hi,

We've submitted an update to this ID for review by the Working Group.

Thanks to our reviewers and their suggestions. We've incorporated most of their 
recommended changes.

We would like to ask the WG for consensus regarding the use of TLS 1.2 and 1.3. 
Obviously, using 1.3 would be optimal. As a counterpoint, there are a lot of 
old-n-slow syslog devices out there that might not be up to running that, or 
might not be timely updated to run 1.3. Can we get some comments from the 
reviewers on this?

Thanks,
Chris

---------- Forwarded message ---------
From: <internet-dra...@ietf.org<mailto:internet-dra...@ietf.org>>
Date: Sun, Sep 11, 2022 at 5:57 PM
Subject: [Uta] I-D Action: draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt
To: <i-d-annou...@ietf.org<mailto:i-d-annou...@ietf.org>>
Cc: <uta@ietf.org<mailto:uta@ietf.org>>



A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Using TLS in Applications WG of the IETF.

         Title           : Updates to the Cipher Suites in Secure Syslog
         Authors         : Chris Lonvick
                           Sean Turner
                           Joe Salowey
   Filename        : draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt
   Pages           : 8
   Date            : 2022-09-11

Abstract:
    The Syslog Working Group published two specifications, namely RFC
    5425 and RFC 6012, for securing the Syslog protocol using TLS and
    DTLS, respectively.

    This document updates the cipher suites in RFC 5425, Transport Layer
    Security (TLS) Transport Mapping for Syslog, and RFC 6012, Datagram
    Transport Layer Security (DTLS) Transport Mapping for Syslog.  It
    also updates the transport protocol in RFC 6012.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-uta-ciphersuites-in-sec-syslog/<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-uta-ciphersuites-in-sec-syslog%2F&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=C4oyYYQUDDovEV0q58hjXk6HU2C1Y5bfOFtSx8RIKJI%3D&reserved=0>

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-uta-ciphersuites-in-sec-syslog-02.html<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-uta-ciphersuites-in-sec-syslog-02.html&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=HxjXrKmido3Dppl9iZnbaP0BRatjUWQnueOOyQx9A%2Bw%3D&reserved=0>

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-uta-ciphersuites-in-sec-syslog-02<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Frfcdiff%3Furl2%3Ddraft-ietf-uta-ciphersuites-in-sec-syslog-02&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=00mqeRcGugvlCceEeX9LARPo1f16%2BGN%2B0XQ%2FQ7yRgD4%3D&reserved=0>


Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts


_______________________________________________
Uta mailing list
Uta@ietf.org<mailto:Uta@ietf.org>
https://www.ietf.org/mailman/listinfo/uta<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Futa&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=LGR3F6J621xFTK72NuFHU6WFb55%2FFBhhfGMP3%2BF8Vac%3D&reserved=0>



_______________________________________________
Uta mailing list
Uta@ietf.org
https://www.ietf.org/mailman/listinfo/uta


_______________________________________________
Uta mailing list
Uta@ietf.org
https://www.ietf.org/mailman/listinfo/uta

Reply via email to