[rfc-i] Re: [saag] Re: Re: Re: Re: Re: RFCs vs Standards

Eric Rescorla <[email protected]>
Newsgroups gmane.ietf.rfc.interest,gmane.ietf.saag
Message-ID <CABcZeBN2v-ZA8MiBueM4uxmpUSfXZGLDUEje2pThnDTuMsp4ow@mail.gmail.com>
On Sat, Dec 28, 2024 at 1:27 PM Phillip Hallam-Baker <[email protected]>
wrote:

> We are not going to fix the mistakes of the past by pretending they didn't
> happen. Not least because the reason we have ended up with a huge amount of
> cryptographic technology that nobody can use is we made bad choices in the
> name of 'security'
>

...


> TLS has an ephemeral key exchange that throws away the shared secret
> originally negotiated rather than ratcheting it in.
>

Can you elaborate on the technical feature you are referring to here? Also,
I think it's a bit odd to suggest that "nobody can use" TLS.

-Ekr

_______________________________________________
rfc-interest mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.