Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Need to add text clarifying where the serialization chain ends #2

Open
MelindaShore opened this issue May 29, 2015 · 1 comment
Open

Comments

@MelindaShore
Copy link
Owner

From Shumon: We might want to be clearer about whether the serialization chain ends in the TLS server's domain name or in a TLSA record corresponding to the server's TLS certificate. For DANE authentication, the latter would be needed, but it may make sense to have the former (also), so that the client can authenticate the server's DNSSEC name to IP address mapping.

@MelindaShore
Copy link
Owner Author

Melinda: We might want to think about having some text describing dnssec use (authenticating the domain name) and separate text describing dane use .

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant