[rfc-i] Re: [saag] Re: Re: Re: Re: Re: RFCs vs Standards
Eric Rescorla <[email protected]>
| Newsgroups | gmane.ietf.rfc.interest,gmane.ietf.saag |
|---|---|
| Message-ID | <CABcZeBN2v-ZA8MiBueM4uxmpUSfXZGLDUEje2pThnDTuMsp4ow@mail.gmail.com> |
On Sat, Dec 28, 2024 at 1:27 PM Phillip Hallam-Baker <[email protected]> wrote: > We are not going to fix the mistakes of the past by pretending they didn't > happen. Not least because the reason we have ended up with a huge amount of > cryptographic technology that nobody can use is we made bad choices in the > name of 'security' > ... > TLS has an ephemeral key exchange that throws away the shared secret > originally negotiated rather than ratcheting it in. > Can you elaborate on the technical feature you are referring to here? Also, I think it's a bit odd to suggest that "nobody can use" TLS. -Ekr _______________________________________________ rfc-interest mailing list -- [email protected] To unsubscribe send an email to [email protected]