[146968] in cryptography@c2.net mail archive
Re: [Cryptography] People should turn on PFS in TLS
daemon@ATHENA.MIT.EDU (Ben Laurie)
Tue Sep 10 15:07:47 2013
X-Original-To: cryptography@metzdowd.com
In-Reply-To: <20130910170053.GH28803@zooko.com>
Date: Tue, 10 Sep 2013 19:42:57 +0100
From: Ben Laurie <ben@links.org>
To: zooko <zooko@zooko.com>
Cc: Rapha?l Jacquot <sxpert@sxpert.org>,
Cryptography Mailing List <cryptography@metzdowd.com>,
"Perry E. Metzger" <perry@piermont.com>
Errors-To: cryptography-bounces+crypto.discuss=bloom-picayune.mit.edu@metzdowd.com
--===============1903137793642760512==
Content-Type: multipart/alternative; boundary=001a11343e669afb0f04e60bdf97
--001a11343e669afb0f04e60bdf97
Content-Type: text/plain; charset=ISO-8859-1
On 10 September 2013 18:00, zooko <zooko@zooko.com> wrote:
> On Fri, Sep 06, 2013 at 06:18:05PM +0100, Ben Laurie wrote:
> > On 6 September 2013 18:13, Perry E. Metzger <perry@piermont.com> wrote:
> >
> > > It would be good to see them abandon RC4 of course, and soon.
> > >
> >
> > In favour of what, exactly? We're out of good ciphersuites.
>
> Please ask your friendly neighborhood TLS implementor to move fast on
> http://tools.ietf.org/id/draft-josefsson-salsa20-tls-02.txt .
>
We prefer https://datatracker.ietf.org/doc/draft-agl-tls-chacha20poly1305/.
--001a11343e669afb0f04e60bdf97
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: quoted-printable
<div dir=3D"ltr"><br><div class=3D"gmail_extra"><br><br><div class=3D"gmail=
_quote">On 10 September 2013 18:00, zooko <span dir=3D"ltr"><<a href=3D"=
mailto:zooko@zooko.com" target=3D"_blank">zooko@zooko.com</a>></span> wr=
ote:<br><blockquote class=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex=
;border-left-width:1px;border-left-color:rgb(204,204,204);border-left-style=
:solid;padding-left:1ex">
<div class=3D"im">On Fri, Sep 06, 2013 at 06:18:05PM +0100, Ben Laurie wrot=
e:<br>
> On 6 September 2013 18:13, Perry E. Metzger <<a href=3D"mailto:perr=
y@piermont.com">perry@piermont.com</a>> wrote:<br>
><br>
</div><div class=3D"im">> > It would be good to see them abandon RC4 =
of course, and soon.<br>
> ><br>
><br>
> In favour of what, exactly? We're out of good ciphersuites.<br>
<br>
</div>Please ask your friendly neighborhood TLS implementor to move fast on=
<br>
<a href=3D"http://tools.ietf.org/id/draft-josefsson-salsa20-tls-02.txt" tar=
get=3D"_blank">http://tools.ietf.org/id/draft-josefsson-salsa20-tls-02.txt<=
/a> .<br></blockquote><div><br></div><div>We prefer <a href=3D"https://data=
tracker.ietf.org/doc/draft-agl-tls-chacha20poly1305/">https://datatracker.i=
etf.org/doc/draft-agl-tls-chacha20poly1305/</a>.</div>
<div><br></div></div></div></div>
--001a11343e669afb0f04e60bdf97--
--===============1903137793642760512==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
_______________________________________________
The cryptography mailing list
cryptography@metzdowd.com
http://www.metzdowd.com/mailman/listinfo/cryptography
--===============1903137793642760512==--