haussli / draft-dahm-opsawg-tacacs-security

IETF draft for new tacacs+ security features
1 stars 1 forks source link

Alan Dekok: zero-seconds lifetime resumption ticket_lifetime #49

Closed dcmgashcisco closed 2 years ago

dcmgashcisco commented 2 years ago

Section 3.2 says:

the resumption ticket_lifetime SHOULD be configurable, including a zero seconds lifetime.

I'm not sure what a "zero-seconds lifetime" would mean. It may be better to just omit the ticket in that case.

haussli commented 2 years ago

it means discard the ticket. rfc 8446 S4.6.1

haussli commented 2 years ago

Migrating this PR to the TLS draft; https://github.com/haussli/draft-dahm-tacacs-tls13/issues/3