Re: draft-stroeder-hashed-userpassword-values-00.txt
Kurt Zeilenga <[email protected]> Tue, 29 Jan 2013 14:23:05 -0800
| Newsgroups | gmane.ietf.ldapext |
|---|---|
| Message-ID | <[email protected]> |
My comments were not intended to discourage to try to produce a RFC in this area, but to provide some insight on issues you will face getting anything in this area published as an RFC. I think an RFC that discussed how standard and various current practices (note, not singuaral) differ, how the range of current practices differ, and all of this impacts these differences upon interoperability and security and other areas of concern, would be useful. A document is simply a technical specification of some additional hash schemes to an experimental extension is likely not to go down well in the IETF or the X.500 standards committee, especially if proposed to be published as anything but experimental independent-submission RFC. Again, this is not intended to discourage you from trying... but more to let you know what you are getting yourself into. -- Kurt