[17150] in Kerberos_V5_Development
Re: NSS for PKINIT, in-progress patches available, feedback sought
daemon@ATHENA.MIT.EDU (Nalin Dahyabhai)
Thu Sep 8 18:16:20 2011
Date: Thu, 8 Sep 2011 18:16:11 -0400
From: Nalin Dahyabhai <nalin@redhat.com>
To: Sam Hartman <hartmans@mit.edu>
Message-ID: <20110908221611.GC6229@redhat.com>
MIME-Version: 1.0
Content-Disposition: inline
In-Reply-To: <tsl4o0m2781.fsf@mit.edu>
Cc: mrw@painless-security.com, krbdev@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu
On Thu, Sep 08, 2011 at 02:56:46PM -0400, Sam Hartman wrote:
> Painless Security is working on pkinit algorithm agility patches. Our
> statement of work only includes openssl support and assumes that the new
> KDF will be provided by each crypto implementation. My assumption is
> that our patches will land on trunk first. You should plan on
> implementing the pkinit algorithm agility KDF for NSS.
Thanks for the heads-up. I'll take a closer look at the draft in
anticipation of the patches.
Nalin
_______________________________________________
krbdev mailing list krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev