On Tue, Oct 05, 2021 at 06:58:24PM -0700, Eric Rescorla wrote:
> On Tue, Oct 5, 2021 at 6:36 PM Martin Thomson wrote:
>
> > I left a comment, but I don't think that the fix, as it is specifically
> > proposed, works.
> >
> > The general shape of the proposal seems credible. A larger epoch space,
On Tue, Oct 5, 2021, at 8:36 PM, Martin Thomson wrote:
> On Wed, Oct 6, 2021, at 12:58, Eric Rescorla wrote:
>> This isn't dispositive, but note that TLS 1.3 doesn't include the epoch
>> in its nonce at all.
>
> That strengthens the gut instinct some, as does the fact that QUIC
> doesn't either.