Re: Servers that just want to have TLS

"Paul E. Hoffman" <[email protected]>
Newsgroups gmane.ietf.apps-tls
Message-ID <v03102806af97cd8cd801@[165.227.249.100]>
At 11:07 AM -0700 5/8/97, Rodney Thayer wrote:
>If I build my own custom application I don't think I have to do negotiation.
>
>If I build an application which claims to be what is generally referred to
>as a standard SMTP server, then I should act like "an SMTP server" and I
>agree with what you're saying.

Ah, yes. I should say "apps that are already deployed and well-known". The
ones that are furthest forward in my brain right now are SMTP, IMAP, and
LDAP.

In all three cases, I think it's inappropriate to start a TLS negotiation
on the well-known port without some "normal" footsieing first. However, I
think that there should be a way for a server to insist on TLS immediately
after the preliminary footsie. I'm looking for a model for that.

--Paul E. Hoffman, Director
--Internet Mail Consortium
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.