[IPP] Fwd: [saag] RADIUS is deprecating MD5
[IPP] Fwd: [saag] RADIUS is deprecating MD5
Ira McDonald
blueroofmusic at gmail.com
Sun Mar 24 18:29:40 UTC 2024
FYI - RADIUS is cleaning up its act - this will impact many users and
systems.
---------- Forwarded message ---------
From: Alan DeKok <aland at deployingradius.com>
Date: Sun, Mar 24, 2024 at 2:23 PM
Subject: [saag] RADIUS is deprecating MD5
To: <saag at ietf.org>
To follow up on my comments at the mic in Brisbane, the RADEXT group is
working on two documents:
* moving TLS to standards track:
https://datatracker.ietf.org/doc/draft-rieckers-radext-rfc6614bis/
* deprecating insecure practices:
https://datatracker.ietf.org/doc/draft-ietf-radext-deprecating-radius/
We expect to submit these documents for publication around IETF 120.
We will be deprecating the use of RADIUS/UDP, in large part due to it's
reliance on MD5. Everyone shipping RADIUS clients should take a serious
look at moving to TLS immediately.
MD5 isn't getting any more secure, and there are few reasons left for
staying with it.
Alan DeKok.
_______________________________________________
saag mailing list
saag at ietf.org
https://www.ietf.org/mailman/listinfo/saag
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.pwg.org/pipermail/ipp/attachments/20240324/b5a19c7b/attachment.html>
More information about the ipp
mailing list