You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@trafficserver.apache.org by "Prakhar Rudra (JIRA)" <ji...@apache.org> on 2016/02/26 00:56:18 UTC

[jira] [Commented] (TS-3216) Add HPKP (Public Key Pinning Extension for HTTP) support

    [ https://issues.apache.org/jira/browse/TS-3216?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15168147#comment-15168147 ] 

Prakhar Rudra commented on TS-3216:
-----------------------------------

Please include features just to add multiple pins ( precalculated ) per domain served. In dual cert (rsa and ec) scenarios one may need to include like 2 main, 2 backup and even one two more. Like say if one wants to use pinning over cloudflare, they will have to pin on CF root certs and in case they decide to leave CF in future, they will need to pin on their own leafs and back ups. 

> Add HPKP (Public Key Pinning Extension for HTTP) support
> --------------------------------------------------------
>
>                 Key: TS-3216
>                 URL: https://issues.apache.org/jira/browse/TS-3216
>             Project: Traffic Server
>          Issue Type: New Feature
>          Components: SSL
>            Reporter: Masaori Koshiba
>            Assignee: Masaori Koshiba
>              Labels: review
>             Fix For: 6.2.0
>
>         Attachments: hpkp-001.patch, hpkp-002.patch, hpkp-003.patch
>
>
> Add "Public Key Pinning Extension for HTTP" Support in Traffic Server.
> RFC 7469 Public Key Pinning Extension for HTTP
> - https://tools.ietf.org/html/rfc7469



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)