[IPP] Fwd: [saag] RADIUS is deprecating MD5

[IPP] Fwd: [saag] RADIUS is deprecating MD5

Ira McDonald blueroofmusic at gmail.com
Sun Mar 24 18:29:40 UTC 2024


FYI - RADIUS is cleaning up its act - this will impact many users and
systems.

---------- Forwarded message ---------
From: Alan DeKok <aland at deployingradius.com>
Date: Sun, Mar 24, 2024 at 2:23 PM
Subject: [saag] RADIUS is deprecating MD5
To: <saag at ietf.org>


  To follow up on my comments at the mic in Brisbane, the RADEXT group is
working on two documents:

* moving TLS to standards track:
https://datatracker.ietf.org/doc/draft-rieckers-radext-rfc6614bis/

* deprecating insecure practices:
https://datatracker.ietf.org/doc/draft-ietf-radext-deprecating-radius/

  We expect to submit these documents for publication around IETF 120.

  We will be deprecating the use of RADIUS/UDP, in large part due to it's
reliance on MD5.  Everyone shipping RADIUS clients should take a serious
look at moving to TLS immediately.

  MD5 isn't getting any more secure, and there are few reasons left for
staying with it.

  Alan DeKok.

_______________________________________________
saag mailing list
saag at ietf.org
https://www.ietf.org/mailman/listinfo/saag
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.pwg.org/pipermail/ipp/attachments/20240324/b5a19c7b/attachment.html>


More information about the ipp mailing list