Proposal Details
Can you add the missing "tls-server-end-point" support of RFC 5929: Channel Bindings for TLS? - https://datatracker.ietf.org/doc/html/rfc5929 - https://www.rfc-editor.org/rfc/rfc5929#section-4
It is needed for security and for example here (In more RFCs): - XEP-0388: Extensible SASL Profile: https://xmpp.org/extensions/xep-0388.html - XEP-0440: SASL Channel-Binding Type Capability: https://xmpp.org/extensions/xep-0440.html - XEP-0474: SASL SCRAM Downgrade Protection: https://xmpp.org/extensions/xep-0474.html - XEP-0480: SASL Upgrade Tasks: https://xmpp.org/extensions/xep-0480.html
Thanks in advance.
Comment From: ianlancetaylor
CC @golang/security
Comment From: Neustradamus
Dear @golang, @golang/security team,
Have you progressed on it?
Thanks in advance.