Hiya,

As discussed at IETF112, I've updated the PEM file format
draft for ECH. [1] Happy to take comments via mail or via
that github thing:-)

As and when the chairs think it's a good time to consider
adoption, or incorporation into the ECH draft, or sending
this somewhere else, I guess we can have that discussion.

This format is supported by my OpenSSL fork [2] which has
CLI tooling for making/consuming these and can be ingested
by the various TLS servers (lighttpd, apache, nginx and
haproxy) with which I've integrated that ECH-enabled build.
(There're pointers to forks for those servers at [3].)

I'll work on the well known url draft in the next while.
It likely needs a bit more work than simple substitution.

Cheers,
S.

[1] https://datatracker.ietf.org/doc/draft-farrell-tls-pemesni/
[2] https://github.com/sftcd/openssl/tree/ECH-draft-13a
[3] https://defo.ie/

Attachment: OpenPGP_0x5AB2FAF17B172BEA.asc
Description: OpenPGP public key

Attachment: OpenPGP_signature
Description: OpenPGP digital signature

_______________________________________________
TLS mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/tls

Reply via email to