Document: draft-ietf-tls-ssl2-must-not-03 Reviewer: Richard Barnes Review Date: 11 Dec 2010 IETF LC End Date: IESG Telechat date: (if known) Summary: This document is ready for publication as a Standards Track RFC. Major issues: Minor issues: Nits/editorial comments: [Section3] This section seems like could benefit from a little more explanation and clarificatio. For instance, you might explicitly deprecate the recommendations in Appendix E of the three TLS RFCs, with the exception of accepting SSLv2 CLIENT-HELLO messages. (Might also be worthwhile to reinforce that even after accepting the SSLv2 CLIENT-HELLO, the server MUST NOT send any further SSLv2 messages.)