[Cryptography] [TLS] ETSI releases standards for enterprise security and data centre management

Salz, Rich rsalz at akamai.com
Tue Dec 4 14:17:09 EST 2018


(I removed TLS from the list)

> Isn't there a lower bar at the IETF for defining new cipher suites, as long as you're not seeking a "recommended" setting?  

Yes.  You have to have a document that the three appointed “TLS Experts” can read.  The current list is Yoav Nir, Nick Sullivan, and I.

> It seems like with an out-of-band escrow agent, the traffic secrets could be escrowed with no changes to TLS.

Yes, but this would not meet the only-semi-stated goal of not requiring expensive changes to the monitoring and security infrastructure already deployed.

	/r$




More information about the cryptography mailing list