Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Clarify sections 2.1 and 2.2 with respect to RFC 5246 7.4.2. #3

Open
grubba opened this issue Jan 13, 2015 · 3 comments
Open

Clarify sections 2.1 and 2.2 with respect to RFC 5246 7.4.2. #3

grubba opened this issue Jan 13, 2015 · 3 comments

Comments

@grubba
Copy link

grubba commented Jan 13, 2015

In TLS 1.2 the restrictions on what certificates are allowed in a certificate chain were relaxed so the following text from sections 2.1 and 2.2 in the draft should be clarified with respect to TLS 1.2:

  • 2.1:
    In ECDHE_ECDSA, the server's certificate MUST contain an ECDSA-
    capable public key and be signed with ECDSA.
  • 2.2:
    The server certificate MUST be signed with RSA.
@grubba
Copy link
Author

grubba commented Jan 13, 2015

Similar text also in section 5.3 Table 3.

@yoavnir
Copy link
Contributor

yoavnir commented Jan 13, 2015

Again, this is for the list, but IMO these restrictions should go away
entirely.

On Tue, Jan 13, 2015 at 1:29 PM, Henrik Grubbström (Grubba) <
[email protected]> wrote:

Similar text also in section 5.3 Table 3.


Reply to this email directly or view it on GitHub
#3 (comment).

@grubba
Copy link
Author

grubba commented Oct 20, 2015

Seems this will be fixed with pull request #10.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants