IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Some questions about "SSH Transport Layer Encryption Modes"



So, it looks like the proper repair here is to clearly document what's
actually implemented and deployed -- implementations must suspend
transport of user data while rekey negotiation is in progress.

This is not optimal but it works.

For those still not satisfied, I invite anyone who wants
"seamless"/non-blocking rekeying to write and submit a draft
documenting how to negotiate the use of a different key cutover
strategy with a consenting peer.

						- Bill



Home | Main Index | Thread Index | Old Index