[146950] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: [Cryptography] What TLS ciphersuites are still OK?

daemon@ATHENA.MIT.EDU (Yaron Sheffer)
Tue Sep 10 10:22:12 2013

X-Original-To: cryptography@metzdowd.com
Date: Tue, 10 Sep 2013 09:00:07 +0300
From: Yaron Sheffer <yaronf.ietf@gmail.com>
To: =?ISO-8859-1?Q?Hanno_B=F6ck?= <hanno@hboeck.de>
In-Reply-To: <20130909231431.7540879c@hboeck.de>
Cc: cryptography@metzdowd.com
Errors-To: cryptography-bounces+crypto.discuss=bloom-picayune.mit.edu@metzdowd.com

Hi Hanno,

Please send any comments on this draft to the TLS Working Group mailing =

list, tls@ietf.org.

Thanks,
	Yaron

On 09/10/2013 12:14 AM, Hanno B=F6ck wrote:
> On Mon, 9 Sep 2013 17:29:24 +0100
> Ben Laurie <ben@links.org> wrote:
>
>> Perry asked me to summarise the status of TLS a while back ...
>> luckily I don't have to because someone else has:
>>
>> http://tools.ietf.org/html/draft-sheffer-tls-bcp-00
>>
>> In short, I agree with that draft. And the brief summary is: there's
>> only one ciphersuite left that's good, and unfortunately its only
>> available in TLS 1.2:
>>
>> TLS_DHE_RSA_WITH_AES_128_GCM_SHA256
>
> I don't really see from the document why the authors discourage
> ECDHE-suites and AES-256. Both should be okay and we end up with four
> suites:

[...]
_______________________________________________
The cryptography mailing list
cryptography@metzdowd.com
http://www.metzdowd.com/mailman/listinfo/cryptography

home help back first fref pref prev next nref lref last post