Re: [TLS] Call for acceptance of draft-moeller-tls-downgrade-scsv

Adam Langley <agl@google.com> Tue, 28 January 2014 00:35 UTC

Return-Path: <agl@google.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 674CC1A02B7 for <tls@ietfa.amsl.com>; Mon, 27 Jan 2014 16:35:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.914
X-Spam-Level:
X-Spam-Status: No, score=-1.914 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, RP_MATCHES_RCVD=-0.535, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pG_vyzRm-Zw6 for <tls@ietfa.amsl.com>; Mon, 27 Jan 2014 16:35:09 -0800 (PST)
Received: from mail-ob0-x229.google.com (mail-ob0-x229.google.com [IPv6:2607:f8b0:4003:c01::229]) by ietfa.amsl.com (Postfix) with ESMTP id 6C19F1A0247 for <tls@ietf.org>; Mon, 27 Jan 2014 16:35:09 -0800 (PST)
Received: by mail-ob0-f169.google.com with SMTP id wo20so7427986obc.0 for <tls@ietf.org>; Mon, 27 Jan 2014 16:35:06 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-type; bh=7LJfWtXN4YBzV59oRYNBc93DjcKcrRWyw0WhFQJXYkk=; b=B1uEdX9qiJWd3qIHMeGZXMO8BcAF50EmaFRhYPKT+axMzihtW2LNceZpHgx2A6SuT0 sBSCIVTZmMM3lY+sMNkO5lGBG9JrOxrR4rnqQnL8j4kNUyiZWSfg5XdlD79g9EgLxKlo NQ4cyTOhwCOMxd7gjyipT4TY8sQ6/k/SywdlMsPqfE0y0An5Vo9tPvESA5DRNIRUbu9i c8dFO9birMY5jZhfMifR0KpSNKfOd6tjene8asIysY/Kh4T5gMYBiJUh3qVLP9z4s6A6 zOrsaLZDEUA4jbMB+aZjh85eG3fkqJDEPTCyco4EMEyPM4qqxYCoICz7uodGpdalTM0X eTWA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-type; bh=7LJfWtXN4YBzV59oRYNBc93DjcKcrRWyw0WhFQJXYkk=; b=f3B7+d21x8aM6MpW5nkPFjcbR7FMKqEua96+ecNpVNBfyP7HVQiMJHNsqalkg43/Au thPmDXObr8eWKf9GiZAcvZnkPVJz1nWwmlTeRtyA7Nad7ZyO/UC9prajudsgbkLHHLgC haD4F0Tk6YEeRk5fTVZJ0be6/0d2bEe3OQoeJpOuqEPwKPfUb3YW3i6ou9ogwXSBzbre /myefPrRBe2dtbY1xiWrVA74bOWaGFs2d/ixB43J/0S7Ft5orO1kP//fiAx3g8+6ywhd wbaKV+RRHTpN718fXdL771TDuaYo6dwwtYnPiTQSpOuuMb9nOo80qE0ACYCEI+n8zrOU vCCA==
X-Gm-Message-State: ALoCoQmTcW2p1iu0Xs5m3kufM1oe2CwsYnvfnQ9j304Ekdprga5MflVhencRe4Z1XQb7KduWgC8BF62UwY0CcfZZmmyCSZfhcp0f0B6e5kGieMXeR/vHhiv7NnwkX1WyqGMQ3eMKqY54wM1S51+ciNCPCOCw8ouv/d0Xp4IkxfK6AtddMk6Mm1bxz27Bxpw2cGulPHJZxlio
X-Received: by 10.60.51.230 with SMTP id n6mr16334598oeo.35.1390869306795; Mon, 27 Jan 2014 16:35:06 -0800 (PST)
MIME-Version: 1.0
Received: by 10.182.79.105 with HTTP; Mon, 27 Jan 2014 16:34:46 -0800 (PST)
In-Reply-To: <20140128001737.D9D581ABC9@ld9781.wdf.sap.corp>
References: <CADMpkcJ4viFwzU9u0uP41Niaopja8PZFowjOALVr3VA1vJ7Uow@mail.gmail.com> <20140128001737.D9D581ABC9@ld9781.wdf.sap.corp>
From: Adam Langley <agl@google.com>
Date: Mon, 27 Jan 2014 19:34:46 -0500
Message-ID: <CAL9PXLw3-WGZHnLJ3YgZKqd9uKJjS5xoqdJQuhGf7mQH66rvqQ@mail.gmail.com>
To: mrex@sap.com
Content-Type: text/plain; charset="UTF-8"
Cc: "tls@ietf.org" <tls@ietf.org>
Subject: Re: [TLS] Call for acceptance of draft-moeller-tls-downgrade-scsv
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Jan 2014 00:35:11 -0000

On Mon, Jan 27, 2014 at 7:17 PM, Martin Rex <mrex@sap.com> wrote:
> It would not be possible to hide such a change in behaviour (writing
> a fatal alert to the network before closing the connection) within
> SChannel.

I don't believe that sending an alert is beyond the ken of Andrei and
Microsoft free to speak up if they have a problem with it.


Cheers

AGL