[saag] Re: [EXTERNAL] Re: NIST Requests Comments on SP 800-52 Rev. 2 | Selection, Configuration, and Use of TLS Implementations
Loganaden Velvindron <[email protected]> Tue, 2 Jun 2026 23:35:38 +0400
| Newsgroups | gmane.ietf.saag |
|---|---|
| Message-ID | <CAOp4FwQFqu18U_FZyYJH5MFG2NkfHApeRRMU+iL_u4jZLDv1ig@mail.gmail.com> |
--===============6180579877830238304== Content-Type: multipart/alternative; boundary="00000000000012197506534a6ba2" --00000000000012197506534a6ba2 Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable I think that enterprises that operate with tight licenses want full visibility into their endpoints. They aren't big fans of tls 1.3, ech and quic. They want proxies for outgoing tls connections. I think that those enterprises will likely support tls 1.2 for a very very long time ? On Tue, 02 Jun 2026, 23:28 Salz, Rich, <[email protected]= > wrote: > The RFC-to-be 9846, a product of the UTA working group, says TLS 1.3 is a > MUST and you MAY do TLS 1.2 if you have installed base or other deploymen= t > concerns. The pre-pub draft is at [1]. > > Disclaimer: I=E2=80=99m a co-author. > > [1] https://datatracker.ietf.org/doc/draft-ietf-uta-require-tls13/ > _______________________________________________ > saag mailing list -- [email protected] > To unsubscribe send an email to [email protected] > --00000000000012197506534a6ba2 Content-Type: text/html; charset="UTF-8" Content-Transfer-Encoding: quoted-printable <div dir=3D"auto">I think that enterprises that operate with tight licenses= want full visibility into their endpoints. They aren't big fans of tls= 1.3, ech and quic. They want proxies for outgoing tls connections.=C2=A0<d= iv dir=3D"auto"><br></div><div dir=3D"auto">I think that those enterprises = will likely support tls 1.2 for a very very=C2=A0long time ?</div><div dir= =3D"auto"><br></div><div dir=3D"auto"><br></div></div><br><div class=3D"gma= il_quote gmail_quote_container"><div dir=3D"ltr" class=3D"gmail_attr">On Tu= e, 02 Jun 2026, 23:28 Salz, Rich, <rsalz=3D<a href=3D"mailto:40akamai.co= [email protected]">[email protected]</a>> wrote:<br></div><bloc= kquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1px #cc= c solid;padding-left:1ex"> <div> <div style=3D"direction:ltr;font-family:Aptos,Arial,Helvetica,sans-serif;fo= nt-size:12pt;color:rgb(0,0,0)"> The RFC-to-be=C2=A09846, a product of the UTA working group, says TLS 1.3 i= s a MUST and you MAY do TLS 1.2 if you have installed base or other deploym= ent concerns.=C2=A0 The pre-pub draft is at [1].</div> <div style=3D"direction:ltr;font-family:Aptos,Arial,Helvetica,sans-serif;fo= nt-size:12pt;color:rgb(0,0,0)"> <br> </div> <div style=3D"direction:ltr;font-family:Aptos,Arial,Helvetica,sans-serif;fo= nt-size:12pt;color:rgb(0,0,0)"> Disclaimer: I=E2=80=99m a co-author.</div> <div style=3D"direction:ltr;font-family:Aptos,Arial,Helvetica,sans-serif;fo= nt-size:12pt;color:rgb(0,0,0)"> <br> </div> <div style=3D"direction:ltr;font-family:Aptos,Arial,Helvetica,sans-serif;fo= nt-size:12pt;color:rgb(0,0,0)"> [1] <a href=3D"https://datatracker.ietf.org/doc/draft-ietf-uta-require-tls1= 3/" target=3D"_blank" rel=3D"noreferrer"> https://datatracker.ietf.org/doc/draft-ietf-uta-require-tls13/</a></div> </div> _______________________________________________<br> saag mailing list -- <a href=3D"mailto:[email protected]" target=3D"_blank" rel= =3D"noreferrer">[email protected]</a><br> To unsubscribe send an email to <a href=3D"mailto:[email protected]" targ= et=3D"_blank" rel=3D"noreferrer">[email protected]</a><br> </blockquote></div> --00000000000012197506534a6ba2-- --===============6180579877830238304== Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: base64 Content-Disposition: inline X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18Kc2FhZyBtYWls aW5nIGxpc3QgLS0gc2FhZ0BpZXRmLm9yZwpUbyB1bnN1YnNjcmliZSBzZW5kIGFuIGVtYWlsIHRv IHNhYWctbGVhdmVAaWV0Zi5vcmcK --===============6180579877830238304==--