3
SSL MUST NOT draft-turner-ssl-must- not-02.txt Tim Polk Sean Turner IETF 78 29 July 2010

SSL MUST NOT draft-turner-ssl-must-not-02.txt Tim Polk Sean Turner IETF 78 29 July 2010

Embed Size (px)

Citation preview

Page 1: SSL MUST NOT draft-turner-ssl-must-not-02.txt Tim Polk Sean Turner IETF 78 29 July 2010

SSL MUST NOTdraft-turner-ssl-must-not-02.txt

Tim PolkSean Turner

IETF 7829 July 2010

Page 2: SSL MUST NOT draft-turner-ssl-must-not-02.txt Tim Polk Sean Turner IETF 78 29 July 2010

draft-turner-ssl-must-not-02.txt

• The idea for the draft came from an exchange between Peter Saint-Andre and Simon Josefsson on the cert-id mailing list.– Seemed like a good idea of prohibit the use of SSL

2.0• We took it one step further and tried to say

don’t use SSL 2.0 or 3.0 and recommended TLS

• This didn’t go down so well ;)

Page 3: SSL MUST NOT draft-turner-ssl-must-not-02.txt Tim Polk Sean Turner IETF 78 29 July 2010

draft-turner-ssl-must-not-02.txt

• -02 removes most of the text and just says don’t do SSL 2.0, which I think nobody is objecting to.

• We’ll move the rest of text to another I-D that we’re working on.

• Does the WG want to adopt this as a work item?