Skip to content

Commit

Permalink
Adding note about suites with unknown properties and their effect
Browse files Browse the repository at this point in the history
  • Loading branch information
martinthomson committed Sep 26, 2014
1 parent c0a197a commit 220db9b
Showing 1 changed file with 5 additions and 0 deletions.
5 changes: 5 additions & 0 deletions draft-ietf-httpbis-http2.xml
Original file line number Diff line number Diff line change
Expand Up @@ -3673,6 +3673,11 @@ HTTP2-Settings = token68
Authenticated Encryption with Additional Data (AEAD) modes, such as the <xref
target="RFC5288">Galois Counter Model (GCM) mode for AES</xref> are acceptable.
</t>
<t>
HTTP/2 implementations MUST NOT offer or select cipher suites that have unknown
properties with respect to these properties. This avoids situations where peers
disagree about whether a given cipher suite is permitted.
</t>
<t>
The effect of these restrictions is that TLS 1.2 implementations could have
non-intersecting sets of available cipher suites, since these prevent the use of the
Expand Down

0 comments on commit 220db9b

Please sign in to comment.