W3C home > Mailing lists > Public > public-webscreens@w3.org > September 2019

Re: [openscreenprotocol] Add psk-min-bits-of-entropy (#208)

From: Mark Foltz \(Google\) via GitHub <sysbot+gh@w3.org>
Date: Thu, 05 Sep 2019 21:38:09 +0000
To: public-webscreens@w3.org
Message-ID: <issue_comment.created-528599531-1567719488-sysbot+gh@w3.org>
Does this address the following item from the F2F:

F2F Action: Include analysis that downgrade of number of bits of entropy can be detected and auth fails.  

It mentions that the agent can close the connection if it gets a PSK that's too short.  Maybe just add a note in the security and privacy section mentioning that this protects against downgrades.

-- 
GitHub Notification of comment by mfoltzgoogle
Please view or discuss this issue at https://github.com/webscreens/openscreenprotocol/pull/208#issuecomment-528599531 using your GitHub account
Received on Thursday, 5 September 2019 21:38:11 UTC

This archive was generated by hypermail 2.4.0 : Friday, 17 January 2020 19:23:19 UTC