On Wed, Sep 11, 2013 at 12:06 PM, Eric Rescorla <[email protected]> wrote: > Before we discuss mechanisms, it would be good to verify that in general > clients and servers don't become unhappy if the timestamp is radically > wrong. Has someone done measurements to verify that this is in fact > the case at a broad scale?
I've observed that some small fraction of traffic to Google puts random bytes in the first-four bytes of the nonce. It was less than 1%, but some clients clearly do this already. Cheers AGL _______________________________________________ perpass mailing list [email protected] https://www.ietf.org/mailman/listinfo/perpass
