Re: Servers that just want to have TLS
"Paul E. Hoffman" <[email protected]>
| Newsgroups | gmane.ietf.apps-tls |
|---|---|
| Message-ID | <v03102806af97cd8cd801@[165.227.249.100]> |
At 11:07 AM -0700 5/8/97, Rodney Thayer wrote: >If I build my own custom application I don't think I have to do negotiation. > >If I build an application which claims to be what is generally referred to >as a standard SMTP server, then I should act like "an SMTP server" and I >agree with what you're saying. Ah, yes. I should say "apps that are already deployed and well-known". The ones that are furthest forward in my brain right now are SMTP, IMAP, and LDAP. In all three cases, I think it's inappropriate to start a TLS negotiation on the well-known port without some "normal" footsieing first. However, I think that there should be a way for a server to insist on TLS immediately after the preliminary footsie. I'm looking for a model for that. --Paul E. Hoffman, Director --Internet Mail Consortium