On 15/09/2022 14:23, Fries, Steffen wrote:
Hi Chris,
Based on the implementations in industry that I'm aware of, I would see TLS 1.2
as mandatory and TLS 1.3 as optional. The take up of TLS 1.3 is not as fast and
will take a while.
I agree.
There is an I-D in OPSAWG to update RADIUS for Encrypted DNS. It
specifies RADIUS over TLS1.2 (RFC6614) and I do not know if and when the
IETF will ever get round to updating that.
Other protocols have the same issue.
Tom Petch
Best regards
Steffen
From: Uta <uta-boun...@ietf.org> On Behalf Of Chris Lonvick
Sent: Montag, 12. September 2022 00:25
To: Uta@ietf.org
Subject: [Uta] Fwd: I-D Action: draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt
Hi,
We've submitted an update to this ID for review by the Working Group.
Thanks to our reviewers and their suggestions. We've incorporated most of their
recommended changes.
We would like to ask the WG for consensus regarding the use of TLS 1.2 and 1.3.
Obviously, using 1.3 would be optimal. As a counterpoint, there are a lot of
old-n-slow syslog devices out there that might not be up to running that, or
might not be timely updated to run 1.3. Can we get some comments from the
reviewers on this?
Thanks,
Chris
---------- Forwarded message ---------
From: <internet-dra...@ietf.org<mailto:internet-dra...@ietf.org>>
Date: Sun, Sep 11, 2022 at 5:57 PM
Subject: [Uta] I-D Action: draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt
To: <i-d-annou...@ietf.org<mailto:i-d-annou...@ietf.org>>
Cc: <uta@ietf.org<mailto:uta@ietf.org>>
A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Using TLS in Applications WG of the IETF.
Title : Updates to the Cipher Suites in Secure Syslog
Authors : Chris Lonvick
Sean Turner
Joe Salowey
Filename : draft-ietf-uta-ciphersuites-in-sec-syslog-02.txt
Pages : 8
Date : 2022-09-11
Abstract:
The Syslog Working Group published two specifications, namely RFC
5425 and RFC 6012, for securing the Syslog protocol using TLS and
DTLS, respectively.
This document updates the cipher suites in RFC 5425, Transport Layer
Security (TLS) Transport Mapping for Syslog, and RFC 6012, Datagram
Transport Layer Security (DTLS) Transport Mapping for Syslog. It
also updates the transport protocol in RFC 6012.
The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-uta-ciphersuites-in-sec-syslog/<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-uta-ciphersuites-in-sec-syslog%2F&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=C4oyYYQUDDovEV0q58hjXk6HU2C1Y5bfOFtSx8RIKJI%3D&reserved=0>
There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-uta-ciphersuites-in-sec-syslog-02.html<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-uta-ciphersuites-in-sec-syslog-02.html&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=HxjXrKmido3Dppl9iZnbaP0BRatjUWQnueOOyQx9A%2Bw%3D&reserved=0>
A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-uta-ciphersuites-in-sec-syslog-02<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Frfcdiff%3Furl2%3Ddraft-ietf-uta-ciphersuites-in-sec-syslog-02&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=00mqeRcGugvlCceEeX9LARPo1f16%2BGN%2B0XQ%2FQ7yRgD4%3D&reserved=0>
Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
_______________________________________________
Uta mailing list
Uta@ietf.org<mailto:Uta@ietf.org>
https://www.ietf.org/mailman/listinfo/uta<https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Futa&data=05%7C01%7Csteffen.fries%40siemens.com%7C5c599eefdbc94ff48ef108da94448067%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C637985319972133943%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=LGR3F6J621xFTK72NuFHU6WFb55%2FFBhhfGMP3%2BF8Vac%3D&reserved=0>
_______________________________________________
Uta mailing list
Uta@ietf.org
https://www.ietf.org/mailman/listinfo/uta
_______________________________________________
Uta mailing list
Uta@ietf.org
https://www.ietf.org/mailman/listinfo/uta