[Cryptography] composing EC & RSA encryption?

Tony Arcieri bascule at gmail.com
Wed Oct 28 13:32:24 EDT 2015


On Wed, Oct 28, 2015 at 8:07 AM, ianG <iang at iang.org> wrote:

> My real worry is that the working groups are going to *add more
> algorithms* and thus make the protocols more brittle.  They are not going
> to take away.  They've been aware of this flaw in their process for a
> decade now [1], but still have no real consensus on how to deprecate a
> cipher suite and rollover to modern stuff.


As someone who actually reads the TLS WG's mailing list, I can tell you
this simply isn't true. See for example:

https://tools.ietf.org/html/rfc7465

There are several things being deprecated from TLS 1.3 as well  (e.g. SHA1,
binary curves). The list of MTI ciphers is much smaller.

-- 
Tony Arcieri
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20151028/b43a986a/attachment.html>


More information about the cryptography mailing list