[Cryptography] People should turn on PFS in TLS

Ben Laurie ben at links.org
Tue Sep 10 14:42:57 EDT 2013


On 10 September 2013 18:00, zooko <zooko at zooko.com> wrote:

> On Fri, Sep 06, 2013 at 06:18:05PM +0100, Ben Laurie wrote:
> > On 6 September 2013 18:13, Perry E. Metzger <perry at piermont.com> wrote:
> >
> > > It would be good to see them abandon RC4 of course, and soon.
> > >
> >
> > In favour of what, exactly? We're out of good ciphersuites.
>
> Please ask your friendly neighborhood TLS implementor to move fast on
> http://tools.ietf.org/id/draft-josefsson-salsa20-tls-02.txt .
>

We prefer https://datatracker.ietf.org/doc/draft-agl-tls-chacha20poly1305/.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20130910/700eca35/attachment.html>


More information about the cryptography mailing list