forked from cyrusimap/cyrus-imapd
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
RFC 9266: Channel Bindings for TLS 1.3 cyrusimap#4191
TLS connections of the IMAPD service provide channel binding data for the SASL authentication layer. The current implementation sets the correct "tls-unique" channel binding data for TLS versions 1.2 and lower, however not for TLS version 1.3. TLS version 1.3 requires using specific exporter keying material (EKM) according to RFC 9266 Section 2: Label: "EXPORTER-Channel-Binding" Context: Zero-length string Key Length: 32 bytes Signed-off-by: Guido Kiener <guido@kiener-muenchen.de>
- Loading branch information
1 parent
c1a4661
commit 43aa26e
Showing
2 changed files
with
73 additions
and
19 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters