[jdev] Why STARTTLS? [was: IMPORTANT www.jabber.org software listings]

Dave Cridland dave at cridland.net
Mon Feb 25 18:55:41 CST 2008


I usually hate receiving responses like this one, but they're  
nonetheless true:

The great StartTLS vs special-socket debate was over something like  
10 years ago - possibly more, actually. Even in protocols which don't  
offer the server id negotiation prior to TLS, as in XMPP, there are  
other benefits, and these are, IIRC, documented in RFC 2595.  
Reopening this debate is going to frustrate you, and annoy other  
people.

There is an advantage to socket based TLS, however, which is usually  
overlooked - it's fewer round-trips. We'll hopefully address this in  
due course on standards@, though.

Dave.
-- 
Dave Cridland - mailto:dave at cridland.net - xmpp:dwd at jabber.org
  - acap://acap.dave.cridland.net/byowner/user/dwd/bookmarks/
  - http://dave.cridland.net/
Infotrope Polymer - ACAP, IMAP, ESMTP, and Lemonade



More information about the JDev mailing list