[Git][NTPsec/ntpsec][master] nts.adoc: reorder NTS-KE client/server exchange.
Gary E. Miller
gitlab at mg.gitlab.com
Thu Jan 31 22:48:43 UTC 2019
Gary E. Miller pushed to branch master at NTPsec / ntpsec
Commits:
bf8afe8a by Gary E. Miller at 2019-01-31T22:47:52Z
nts.adoc: reorder NTS-KE client/server exchange.
Match the actual order of events. S2C and C2S computed before
cokkies returned to client.
- - - - -
1 changed file:
- devel/nts.adoc
Changes:
=====================================
devel/nts.adoc
=====================================
@@ -97,6 +97,11 @@ not a network connection.
- A sorted list of AEAD algorithms
link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-4.1.5[4.1.5]
+==== NTS-KE server and NTS-KE client compute from the TLS connection:
+- C2S and S2C encryption keys
+ link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-4.2[4.2],
+ link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-5.1[5.1]
+
==== NTS-KE client gets back:
- NTPD server hostname or IP Address
link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-4.1.7[4.1.7]
@@ -105,11 +110,6 @@ not a network connection.
- The selected AEAD algorithm
link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-4.1.5[4.1.5]
-==== NTS-KE server and NTS-KE client compute from the TLS connection:
-- C2S and S2C encryption keys
- link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-4.2[4.2],
- link:https://tools.ietf.org/html/draft-ietf-ntp-using-nts-for-ntp#section-5.1[5.1]
-
For AEAD, we need libaes_siv.so, RFC 5297
It's not in OpenSSL yet.
https://github.com/dfoxfranke/libaes_siv
View it on GitLab: https://gitlab.com/NTPsec/ntpsec/commit/bf8afe8a35ebd3e74e4bc2e0652f305912e41313
--
View it on GitLab: https://gitlab.com/NTPsec/ntpsec/commit/bf8afe8a35ebd3e74e4bc2e0652f305912e41313
You're receiving this email because of your account on gitlab.com.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ntpsec.org/pipermail/vc/attachments/20190131/319b6b00/attachment.html>
More information about the vc
mailing list