[Gt-eos] TLS 1.3

Mischa Salle msalle at nikhef.nl
Thu May 24 14:56:09 CEST 2018

Hi Mattias, others,

first of all, I don't know what the problem is, and am not really an
expert in either, but I did see a long thread coming by on the
openssl-project list, starting at:
(plus a short one just before
about OpenSSL and TLS1.3. It was mostly about SNI (don't know if that's
an issue here).

Most is summarized in a wiki https://wiki.openssl.org/index.php/TLS1.3
They also say there that 1.1.1 is not being released before TLS1.3 is
actually released (currently still in draft:

I haven't gone through the wiki in detail but see several points that
might cause our breakage.

AFAICT the unique error we see is
"globus_gsi_gssapi: Error with GSS token: The input token has an invalid length of: 0" 

    Best wishes,

On Thu, May 24, 2018 at 10:34:49AM +0200, Mattias Ellert wrote:
> Hi!
> Is there anyone around with knowledge of the globus-gssapi-gsi
> internals and TLS 1.3 as implemented in openssl 1.1.1 that could look
> into making them work together?
> https://github.com/gridcf/gct/issues/43
> https://github.com/globus/globus-toolkit/issues/123
> Is this likely to be addressed by the old globus upstream or is this
> something that should be addressed by GCT maintainers?
> 	Mattias

> _______________________________________________
> Gt-eos mailing list
> Gt-eos at mailman.egi.eu
> http://mailman.egi.eu/mailman/listinfo/gt-eos

Nikhef                      Room  H155
Science Park 105            Tel.  +31-20-592 5102
1098 XG Amsterdam           Fax   +31-20-592 5155
The Netherlands             Email msalle at nikhef.nl
  __ .. ... _._. .... ._  ... ._ ._.. ._.. .._..
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3402 bytes
Desc: not available
URL: <http://mailman.egi.eu/pipermail/gt-eos/attachments/20180524/570aea85/attachment.p7s>

More information about the Gt-eos mailing list