From mboxrd@z Thu Jan 1 00:00:00 1970 Path: news.gmane.org!not-for-mail From: Lars Magne Ingebrigtsen Newsgroups: gmane.emacs.devel Subject: Re: [PATCH RFC] GnuTLS: Support TOFU certificate checking. Date: Wed, 08 Oct 2014 16:09:20 +0200 Message-ID: References: <1412716565-7786-1-git-send-email-toke@toke.dk> <87a957o87z.fsf@alrua-karlstad.karlstad.toke.dk> <87bnpm2249.fsf@toke.dk> <83eguik9ip.fsf@gnu.org> <83d2a2k91n.fsf@gnu.org> <83bnpmk8fd.fsf@gnu.org> <838ukqk7gd.fsf@gnu.org> <834mvek6dq.fsf@gnu.org> NNTP-Posting-Host: plane.gmane.org Mime-Version: 1.0 Content-Type: text/plain X-Trace: ger.gmane.org 1412777402 14744 80.91.229.3 (8 Oct 2014 14:10:02 GMT) X-Complaints-To: usenet@ger.gmane.org NNTP-Posting-Date: Wed, 8 Oct 2014 14:10:02 +0000 (UTC) Cc: tzz@lifelogs.com, toke@toke.dk, emacs-devel@gnu.org To: Eli Zaretskii Original-X-From: emacs-devel-bounces+ged-emacs-devel=m.gmane.org@gnu.org Wed Oct 08 16:09:56 2014 Return-path: Envelope-to: ged-emacs-devel@m.gmane.org Original-Received: from lists.gnu.org ([208.118.235.17]) by plane.gmane.org with esmtp (Exim 4.69) (envelope-from ) id 1XbrwB-0006vr-Pd for ged-emacs-devel@m.gmane.org; Wed, 08 Oct 2014 16:09:55 +0200 Original-Received: from localhost ([::1]:36417 helo=lists.gnu.org) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1XbrwB-0007cx-Bb for ged-emacs-devel@m.gmane.org; Wed, 08 Oct 2014 10:09:55 -0400 Original-Received: from eggs.gnu.org ([2001:4830:134:3::10]:40141) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1Xbrw3-0007a0-IO for emacs-devel@gnu.org; Wed, 08 Oct 2014 10:09:52 -0400 Original-Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1Xbrvy-0003vG-3n for emacs-devel@gnu.org; Wed, 08 Oct 2014 10:09:47 -0400 Original-Received: from hermes.netfonds.no ([80.91.224.195]:54768) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1Xbrvx-0003vC-U0; Wed, 08 Oct 2014 10:09:42 -0400 Original-Received: from cm-84.215.51.58.getinternet.no ([84.215.51.58] helo=stories.gnus.org) by hermes.netfonds.no with esmtpsa (TLS1.0:DHE_RSA_AES_128_CBC_SHA1:16) (Exim 4.72) (envelope-from ) id 1Xbrvd-0003eZ-5v; Wed, 08 Oct 2014 16:09:21 +0200 Face: iVBORw0KGgoAAAANSUhEUgAAADAAAAAwBAMAAAClLOS0AAAAD1BMVEVKUlSux88mJiWZs7pu f4QxwGGwAAACT0lEQVQ4jW2UgY3kIAxFvUAByzkFIEIBEFOAA+6/pvuQzJ5OWqTdmcnDxv/bhOxd 8v+qJMLxl3WQtPcrtkXp8g989nT10TT8gIaIbjajJh81l/XDrDGtTJUIDyf+3B07EYUHsMshsApA iZwA9AG1SA/iJEQNdvnIsQKsgFuO0E82VqKEndJbBDhKtOnH5DlyRgWRTTdg5PY9ifQcVk6kofsD zpHIRlA1R42DxQ/oOWdKPHJYAOl+gGmZ4SgQU9vxggOFN5TGYUipvrfr6wUO4LuIUBk+xSopPuCC BXEQTUQOeHX5BzAkNcbhqwDUNrPZvcDlGa3AgzHXJ7m0ZABoO+AzkeGBas6wZX6Ay8Vlh0QV/3TG 42sDsWAz6G4cW6gAO8KuMCM0RIn4zRPSH4AqwoSGp9VWc2jfO1VNMM6jp6sR3+qmNoevBAXB5ZNs R/xJQayfSyBEdC+YgD1fx4QghylZlqzqrkQBSJHzVbiB5yzQCPFL0GrNzQ+4zuU99UQTmjDSt2ww 81Kf/fAKsxaYG/BVpnnRnm4VR3BOXwCjycscOlVCh4v0gGufR730adcpmXKWBSRJEyA3AfK8itWy wWolhjOo9IkPxDqcT8LLGV7VknqkdBm2bLBvAjlIhugJf2SDJvsmwAZsLrqNeyJEcSmfrDgjWMA0 wdgN5EIZsnYrGfK9ADucrHbL8K7gjuTzAXDpXOcbemmS6oQ8AEaE7SZhDDCjvo5zg7bmcL0euOaU M+7pCgCILPy8V1ZlWMO/IL7vm109lr1vn8jy26p/AXpElUoFje1TAAAAAElFTkSuQmCC X-Now-Playing: Various's _The Wire Tapper 29_: "Roland Etzin - Portrait 6 (Japan) (excerpt)" X-Hashcash: 1:23:141008:toke@toke.dk::TpUXB3/d2Oe/MSei:00000G4fy X-Hashcash: 1:23:141008:eliz@gnu.org::k/fEdyGygbKo/7nS:00000Mg9j X-Hashcash: 1:23:141008:tzz@lifelogs.com::AwrMsJe01kNYxWPX:19Uhu X-Hashcash: 1:23:141008:emacs-devel@gnu.org::iLDxpmi7nPHJiBHO:000000000000000000000000000000000000000001aw9p In-Reply-To: <834mvek6dq.fsf@gnu.org> (Eli Zaretskii's message of "Wed, 08 Oct 2014 17:01:21 +0300") User-Agent: Gnus/5.130012 (Ma Gnus v0.12) Emacs/24.4.50 (gnu/linux) X-MailScanner-ID: 1Xbrvd-0003eZ-5v MailScanner-NULL-Check: 1413382161.59835@FN4iMsbDZ5iOi5lRLEG2MQ X-detected-operating-system: by eggs.gnu.org: Genre and OS details not recognized. X-Received-From: 80.91.224.195 X-BeenThere: emacs-devel@gnu.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: "Emacs development discussions." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: emacs-devel-bounces+ged-emacs-devel=m.gmane.org@gnu.org Original-Sender: emacs-devel-bounces+ged-emacs-devel=m.gmane.org@gnu.org Xref: news.gmane.org gmane.emacs.devel:175134 Archived-At: Eli Zaretskii writes: > Did you intend to do that inside open-network-stream? Yes. > If so, it will suddenly start talking to the user, something that > applications might not be ready for. I don't see why the application would need to know much, if anything, about it. `open-network-stream' would say "Invalid certificate. (Bla bla.) Connect anyway?" and the user would type `y' or `n'. I can't really see how that would disturb smtpmail, Gnus, nnimap, pop3, rmail, erc or any other application I can think of... -- (domestic pets only, the antidote for overdose, milk.) bloggy blog: http://lars.ingebrigtsen.no