[Andy Lutomirski] Re: [TLS] multiple clients in one process (was: Re: Deployment ... Re: This working group has failed)

Daniel Kahn Gillmor dkg at fifthhorseman.net
Wed Nov 27 00:12:42 PST 2013


hey gnutls and p11-kit folks--

this message came up on the IETF TLS WG list, as a particular complaint
about the relationship between gnutls and pkcs11 making it more
difficult to use gnutls than it should be.

I'm not sure if there is anything concrete to address here (or if there
is, if it would be doable without API or ABI breakage), but i just
wanted to make sure that the developers are aware that the concern has
been aired publicly.  If the concern can be addressed and fixed, that
would be great.

If you think the concern raised is a misconception, or if there is a
particular way to avoid the implied risks with forking or
multithreading, i would be happy to relay any relevant clarifications to
the TLS WG.

      --dkg

-------------- next part --------------
An embedded message was scrubbed...
From: Andy Lutomirski <luto at amacapital.net>
Subject: Re: [TLS] multiple clients in one process (was: Re: Deployment ... Re: This working group has failed)
Date: Tue, 19 Nov 2013 22:24:03 -0800
Size: 3179
URL: <http://lists.freedesktop.org/archives/p11-glue/attachments/20131127/bc5c584d/attachment.mht>


More information about the p11-glue mailing list