[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: draft-hoffman-rfc2487bis-03.txt



John Gardiner Myers <jgmyers@xxxxxxxxxxxx> writes:
> A server which does not have a certificate installed and which does not
> support any anonymous ciphers SHOULD NOT advertise the STARTTLS keyword
> as it is not currently able to negotiate the use of TLS.
Why this particular exception? Servers which have been configured not
to support any ciphers or any compression algorithms also shoulnd't
advertise.  In short, servers which can't do TLS shoulnd't advertise 
it.
-Ekr