Re: Channel binding for post-quantum cryptography - Mailing list pgsql-hackers

From Jacob Champion
Subject Re: Channel binding for post-quantum cryptography
Date
Msg-id CAOYmi+nkVOdQM2XgDz1VWPDRj11z-aOcpQJ3m2Sa0jP4rAu_4w@mail.gmail.com
Whole thread Raw
In response to Re: Channel binding for post-quantum cryptography  (Nico Williams <nico@cryptonector.com>)
Responses Re: Channel binding for post-quantum cryptography
List pgsql-hackers
On Tue, Oct 28, 2025 at 9:46 AM Nico Williams <nico@cryptonector.com> wrote:
> RFC 5929 co-author here.  We should take this to the IETF TLS WG mailing
> list and update RFC 5929 and the tls-server-end-point registraion to fix
> this.
>
> Options in the case that the certificate's signature algorithm does not
> have a digest associated with it include:

Ah. (Filip, disregard my earlier question about the draft RFC and
sigalgs; I think I understand now. I didn't look closely enough at the
patch before sending.)

> Maybe there are more options still.  But we're not likely to solve this
> problem here.  This really belongs on the IETF TLS WG mailing list.

+1. (Any immediate takers on the committer side?)

--Jacob



pgsql-hackers by date:

Previous
From: Nathan Bossart
Date:
Subject: Re: Feature: psql - display current search_path in prompt
Next
From: Sami Imseih
Date:
Subject: Re: [BUG] temporary file usage report with extended protocol and unnamed portals