Re: STARTTLS & EHLO

Tony Finch <dot@dotat.at> Wed, 28 January 2009 14:41 UTC

Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id n0SEfAaD050823 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Wed, 28 Jan 2009 07:41:10 -0700 (MST) (envelope-from owner-ietf-smtp@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.14.2/8.13.5/Submit) id n0SEfA1A050822; Wed, 28 Jan 2009 07:41:10 -0700 (MST) (envelope-from owner-ietf-smtp@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-smtp@mail.imc.org using -f
Received: from ppsw-5.csi.cam.ac.uk (ppsw-5.csi.cam.ac.uk [131.111.8.135]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id n0SEewOj050801 for <ietf-smtp@imc.org>; Wed, 28 Jan 2009 07:41:09 -0700 (MST) (envelope-from fanf2@hermes.cam.ac.uk)
X-Cam-AntiVirus: no malware found
X-Cam-SpamDetails: not scanned
X-Cam-ScannerInfo: http://www.cam.ac.uk/cs/email/scanner/
Received: from hermes-2.csi.cam.ac.uk ([131.111.8.54]:37874) by ppsw-5.csi.cam.ac.uk (smtp.hermes.cam.ac.uk [131.111.8.155]:25) with esmtpa (EXTERNAL:fanf2) id 1LSBb7-000667-IT (Exim 4.70) (return-path <fanf2@hermes.cam.ac.uk>); Wed, 28 Jan 2009 14:40:57 +0000
Received: from fanf2 (helo=localhost) by hermes-2.csi.cam.ac.uk (hermes.cam.ac.uk) with local-esmtp id 1LSBb7-0003ME-Mp (Exim 4.67) (return-path <fanf2@hermes.cam.ac.uk>); Wed, 28 Jan 2009 14:40:57 +0000
Date: Wed, 28 Jan 2009 14:40:57 +0000
From: Tony Finch <dot@dotat.at>
X-X-Sender: fanf2@hermes-2.csi.cam.ac.uk
To: Tony Hansen <tony@att.com>
cc: ietf-smtp@imc.org
Subject: Re: STARTTLS & EHLO
In-Reply-To: <497F86CB.60904@att.com>
Message-ID: <alpine.LSU.2.00.0901281434440.4546@hermes-2.csi.cam.ac.uk>
References: <497DE492.4080506@pscs.co.uk> <497DED29.70402@att.com> <497ED420.30708@pscs.co.uk> <alpine.LSU.2.00.0901271403220.4546@hermes-2.csi.cam.ac.uk> <497F86CB.60904@att.com>
User-Agent: Alpine 2.00 (LSU 1167 2008-08-23)
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
Sender: owner-ietf-smtp@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-smtp/mail-archive/>
List-ID: <ietf-smtp.imc.org>
List-Unsubscribe: <mailto:ietf-smtp-request@imc.org?body=unsubscribe>

On Tue, 27 Jan 2009, Tony Hansen wrote:
>
> Ahhh, there's where the difference in interpretation lays. One
> interpretation is that the remote side is required to forget the value
> that was passed with the original EHLO command. Another interpretation
> is that it further must forget that an EHLO command was issued at all.
>
> I guess I can see either interpretation of the STARTTLS spec.

As far as I can see it is clear. "The server MUST discard any knowledge
obtained from the client [...] which was not obtained from the TLS
negotiation itself. The client MUST discard any knowledge obtained from
the server [...] which was not obtained from the TLS negotiation itself."

The parts which I have elided are just examples, because they start "such
as".

Tony.
-- 
f.anthony.n.finch  <dot@dotat.at>  http://dotat.at/
GERMAN BIGHT HUMBER: SOUTHWEST 5 TO 7. MODERATE OR ROUGH. SQUALLY SHOWERS.
MODERATE OR GOOD.