ietf
[Top] [All Lists]

RE: Last Call: <draft-ietf-tls-ssl2-must-not-03.txt> (Prohibiting SSL Version 2.0) to Proposed Standard

2010-12-02 23:11:41
Joe Salowey [mailto:jsalowey(_at_)cisco(_dot_)com] writes:

Hi Glen,

In reading the text and I'm not exactly sure where the confusion or
contradiction comes in.  I think your suggested text is fine, but I'm
not sure how it improves things.  If I understand your point correctly
accepting an SSL 2.0 hello as the first message in the TLS handshake is
an example of using at least part of SSL 2.0, so we should indicate that
this is an exception to the MUST NOT use SSL 2.0 directive.  Is this
your concern?

Yup.

...


_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf