Opened 13 years ago
#112 new clarification
Support for renegotiation ciphersuite
Reported by: | jsalowey@… | Owned by: | |
---|---|---|---|
Priority: | critical | Milestone: | DISCUSS |
Component: | draft-ietf-tls-renegotiation-00 | Version: | 02 |
Severity: | Active WG Document | Keywords: | |
Cc: |
Description
Section 4.1.1 describes support for a renegotiation ciphersuite as a mechanism to indicate support for fixed renegotiation if extensions are removed from the ClientHello?. This prevents a MITM attack against clients which use a fallback behavior.
The draft currently questions whether this is needed.
Note: See
TracTickets for help on using
tickets.