Stephen Farrell <stephen.farrell at cs.tcd.ie> writes: >I really don't see AES-GCM going away while there's h/w support. There's very little HW support for this in mobile, which is why Google wants ChaCha20, because it's efficient in software. And since Google wants it, it's going to be mandatory in TLS 1.3. Peter.