Re: [TLS] adopted: draft-ghedini-tls-certificate-compression

Martin Thomson <martin.thomson@gmail.com> Fri, 09 June 2017 07:03 UTC

Return-Path: <martin.thomson@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3BB94126C25; Fri, 9 Jun 2017 00:03:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wZUMvHCk5Zol; Fri, 9 Jun 2017 00:03:13 -0700 (PDT)
Received: from mail-lf0-x231.google.com (mail-lf0-x231.google.com [IPv6:2a00:1450:4010:c07::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5817612946D; Fri, 9 Jun 2017 00:03:04 -0700 (PDT)
Received: by mail-lf0-x231.google.com with SMTP id p189so26182323lfe.2; Fri, 09 Jun 2017 00:03:04 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=TssgRkFrIdsSx19Q80o2c+4zF1ns/Nq7Nl0MB+nI7+o=; b=YT8wrogdP6FPKq0yqhLmIo2dkXwwdXOsdcETehcKQmCvBn3Y21Q3VJqRoyoTX0+mp7 ujYmd/Vt7xEPMjMMJGEcL/stGWwRNtUXn5euy9d3cRYwRbH0tl3B0JnG8gbmrDoWfE80 jEcmjVMqOB0rMo0dsHDB2y79YnzD0//iFL/0vGRgm1sEAR7JXg2Fru9pM3Xu6dSQIKDG kEy7rGxS3+LzImoUaj3KuWugkjMnVRuXack4sv6bQAPzEd9mOXerUsfy6GJdIdnIAEBM lXMORgb+S9Utg5v993YYr0lM+sViVL2Kv2dwD1GeI0ln7zX8Xvjm/cb7L+X+W8y+YYam txLQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=TssgRkFrIdsSx19Q80o2c+4zF1ns/Nq7Nl0MB+nI7+o=; b=WYCRSUwVWRGv5L9K8x7HfnO/ppJykLHj/HQ7Csnn5eek9qMBTxdzQPfSXFsmm/6bME 5Wcd2v/GrLYfdipd3XpSBeprUZW2EgH96ovDizIlZfx99dS1qaL/sR9hz1oGjZycvn88 jXSV74OebcK+fPsR+NTYQR8cgLwgbmbs7UyEQTAjJyLmVI4cZAqOLyvmctDp0MCy0ryy wXLv1szEoE84fPLOx9g0+/O8ViTuBD0rcnVAAztHfQ8NDo+AWOahph3QdF7SeuFh2Ae+ 8qcykX9EseOKEI8QY1etljfto89KINiI5lGb2CBSQUpYAbgnxSx1CZXL0CEWGExZ976O igLw==
X-Gm-Message-State: AODbwcASPQbERXnShFhvrd+R8v4MoP0ee01/HpcEJ31GwOiIqW4disac e9oLNf3T7uwGH8fkdRjobKUIzQMGIQ==
X-Received: by 10.25.217.77 with SMTP id q74mr6375115lfg.50.1496991782667; Fri, 09 Jun 2017 00:03:02 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.46.8.66 with HTTP; Fri, 9 Jun 2017 00:03:01 -0700 (PDT)
In-Reply-To: <CAF-CG+KeQ7twv05kkGHdeHKbKRo9GjH4KXGSTbLBnbife1Vfcg@mail.gmail.com>
References: <B3FAE1B5-E608-489F-B3B9-BC966B673D94@sn3rd.com> <201706070223.19120.davemgarrett@gmail.com> <CAF-CG++JDse77x185Sb996P4ehWi=Ww_64Ks68-ZiYg_No+d0g@mail.gmail.com> <201706072043.38076.davemgarrett@gmail.com> <CAF-CG+KeQ7twv05kkGHdeHKbKRo9GjH4KXGSTbLBnbife1Vfcg@mail.gmail.com>
From: Martin Thomson <martin.thomson@gmail.com>
Date: Fri, 09 Jun 2017 09:03:01 +0200
Message-ID: <CABkgnnWwdDCojEPDOLP3mV2uw4-RQGQqfmJhrTUcvESbHBTfuA@mail.gmail.com>
To: Piotr Sikora <piotrsikora@google.com>
Cc: Dave Garrett <davemgarrett@gmail.com>, Alessandro Ghedini <alessandro@cloudflare.com>, "tls@ietf.org" <tls@ietf.org>, "draft-ghedini-tls-certificate-compression@ietf.org" <draft-ghedini-tls-certificate-compression@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/lRSdybbRpppULfp2ii7GxgB_RGM>
Subject: Re: [TLS] adopted: draft-ghedini-tls-certificate-compression
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 09 Jun 2017 07:03:15 -0000

On 9 June 2017 at 01:45, Piotr Sikora <piotrsikora@google.com> wrote:
> FWIW, Brotli encryption at top compression levels (10 & 11) is quite
> expensive, so it probably only makes sense for pre-compressed
> certificates and possibly for one-time compression when loading
> certificates.


Certificates don't change that often...