Skip to content

RFC 9266: Channel Bindings for TLS 1.3 support #95350

Closed as not planned
Closed as not planned
@Neustradamus

Description

@Neustradamus

Can you add the support of RFC 9266: Channel Bindings for TLS 1.3?

Little details, to know easily:

  • tls-unique for TLS =< 1.2
  • tls-server-end-point
  • tls-exporter for TLS = 1.3

I think that you have seen the jabber.ru MITM:

It is needed for all SCRAM-SHA-*-PLUS (several RFCs) and specified in:

A best SCRAM SASL and Channel Binding explanation:

An announcement has been done by Slixmpp team here about the security problem:

Thanks in advance.

Linked to:

Metadata

Metadata

Assignees

No one assigned

    Labels

    type-featureA feature request or enhancement

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions