Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

RFC 9266: Channel Bindings for TLS 1.3 support #3140

Closed
Neustradamus opened this issue Aug 2, 2022 · 10 comments
Closed

RFC 9266: Channel Bindings for TLS 1.3 support #3140

Neustradamus opened this issue Aug 2, 2022 · 10 comments
Assignees

Comments

@Neustradamus
Copy link

Neustradamus commented Aug 2, 2022

Can you add the support of RFC 9266: Channel Bindings for TLS 1.3?

Little details, to know easily:

  • tls-unique for TLS =< 1.2
  • tls-server-end-point
  • tls-exporter for TLS = 1.3

Thanks in advance.

Linked to:

@georgehazan
Copy link
Member

@Neustradamus hi, is there a server where I could test this feature?

@georgehazan
Copy link
Member

Aha, Prosody is ok, I'll upgrade my server

@georgehazan
Copy link
Member

@Neustradamus I've added some code and tested that it really reports some data. Unfortunately, I hadn't verified it with the real server, because I still don't have the version of Prosody that supports it.

@Neustradamus
Copy link
Author

@georgehazan: Thanks for your changes!

You can not try with Prosody trunk?

@Neustradamus
Copy link
Author

@georgehazan: Have you looked for "tls-server-end-point"?

@Neustradamus
Copy link
Author

@georgehazan
Copy link
Member

The problem is where to get Prosody Trunk... I have Ubuntu on my desktop, and it comes with the previous version, those SASL fixes were introduced only 8 weeks ago

@Neustradamus
Copy link
Author

@Neustradamus
Copy link
Author

@georgehazan: Have you tested?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants