Re: [TLS] security levels for TLS

Nikos Mavrogiannopoulos <nmav@gnutls.org> Fri, 12 October 2007 19:38 UTC

Return-path: <tls-bounces@lists.ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1IgQKw-0003fP-4E; Fri, 12 Oct 2007 15:38:18 -0400
Received: from tls by megatron.ietf.org with local (Exim 4.43) id 1IgQKu-0003dD-Tz for tls-confirm+ok@megatron.ietf.org; Fri, 12 Oct 2007 15:38:16 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1IgQKu-0003ZE-Jr for tls@lists.ietf.org; Fri, 12 Oct 2007 15:38:16 -0400
Received: from nf-out-0910.google.com ([64.233.182.187]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1IgQKk-0001pW-O8 for tls@lists.ietf.org; Fri, 12 Oct 2007 15:38:12 -0400
Received: by nf-out-0910.google.com with SMTP id 4so956329nfv for <tls@lists.ietf.org>; Fri, 12 Oct 2007 12:37:35 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:from:to:subject:date:user-agent:references:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:message-id:sender; bh=Bh0OMHHWvvTghC1V4fJbfjht7MTmRb16mmT83x6Gkkg=; b=ek8Zwcmx9w5llzrT25g/GUGhxClmCKfb6T4M9WDQpBtv295PQSrLD7YuuoDbmd5OLokCiH+7ojwvtq4FG72RmcSetbgnMl0qycFa2rd/TK4a6202VV2thIZK5IP2UG5O98bJlNKRQ899n0EHJ1x/cQOwl+LA7Xe1qJIBRkkP4sA=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:from:to:subject:date:user-agent:references:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:message-id:sender; b=ujm8Xe1PORk5m/9TUkHMYKMg02bmRlDKmIWvHKeRhaMd11OzMFnMaiWr47jHwJIBLX6qB8bnVDB+HaBdV4LXGBlGHIOQoGIqIS5WDtRp2tG3Z29x8IgBi84WWE3SAlzhG82jdZYhUdIWTllUi3Y28XhAQPJfAhjaH8BDvs/Ovg0=
Received: by 10.86.98.18 with SMTP id v18mr2611051fgb.1192217854637; Fri, 12 Oct 2007 12:37:34 -0700 (PDT)
Received: from crystal.lan ( [77.49.71.58]) by mx.google.com with ESMTPS id f31sm2097328fkf.2007.10.12.12.37.32 (version=TLSv1/SSLv3 cipher=OTHER); Fri, 12 Oct 2007 12:37:33 -0700 (PDT)
From: Nikos Mavrogiannopoulos <nmav@gnutls.org>
To: tls@lists.ietf.org
Subject: Re: [TLS] security levels for TLS
Date: Fri, 12 Oct 2007 22:37:30 +0300
User-Agent: KMail/1.9.6 (enterprise 0.20070907.709405)
References: <c331d99a0710080621g7c0ec91et35c46553c23f4402@mail.gmail.com> <470FC52E.6080707@pobox.com> <p06240828c3357a914a76@[192.168.1.3]>
In-Reply-To: <p06240828c3357a914a76@[192.168.1.3]>
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
Message-Id: <200710122237.30517.nmav@gnutls.org>
X-Spam-Score: 0.0 (/)
X-Scan-Signature: de4f315c9369b71d7dd5909b42224370
X-BeenThere: tls@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/tls>
List-Post: <mailto:tls@lists.ietf.org>
List-Help: <mailto:tls-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@lists.ietf.org?subject=subscribe>
Errors-To: tls-bounces@lists.ietf.org

On Friday 12 October 2007, Paul Hoffman wrote:
> At 12:04 PM -0700 10/12/07, Mike wrote:
> >Apparently no argument will suffice, and you would rather keep the
> >status quo than be proactive.  How long do you think it would take
> >to add this extension to a TLS toolkit?  In my own code, I could
> >probably do it in less than a day, with time left over to get in a
> >round of 18 holes.
>
> No doubt. Of what positive and negative value would such code be?
> Confusing and/or giving users false senses of security are definitely
> negative.

Actually I think the latter sentence describes the current situation!


regards,
Nikos


_______________________________________________
TLS mailing list
TLS@lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls