💾 Archived View for rawtext.club › ~sloum › geminilist › 002123.gmi captured on 2020-09-24 at 03:20:43. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2020-09-24)

-=-=-=-=-=-=-

<-- back to the mailing list

Removing expiry dates for TOFU

Solderpunk solderpunk at posteo.net

Wed Jul 8 23:18:25 BST 2020

- - - - - - - - - - - - - - - - - - - 

Thanks for sharing this! I will read it closely. It's a shame if it'snot widely implemented, but there may well still be good ideas in there,or details we've overlooked.

Cheers,Solderpunk

On Wed Jul 8, 2020 at 11:27 PM CEST, Petite Abeille wrote:

On Jul 8, 2020, at 20:25, Phil Leblanc <philanc at gmail.com> wrote:
Yes. Looks interesting, and it goes in the right direction.
Unfortunately, the RFC is already quite old (2014) and according to
Wikipedia, it is only supported by GnuTLS (I didn't check directly).
Do you know if it is already used in some visible applications?
Hmm, no :) Just stumbled upon it on the openssl mailing list, where
someone was asking if it was supported:
RFC 7250 raw public keys?
https://www.mail-archive.com/openssl-users@openssl.org/msg88412.html
There is an open issue for it:
Raw Public Key (RFC 7250) support
https://github.com/openssl/openssl/issues/6929
mbedtls seems to have something:
Support Raw Public Key mode (RFC7250)
https://github.com/ARMmbed/mbedtls/pull/336