Re: [TLS] analysis of wider impact of TLS1.3 replayabe data

2016-03-13 Thread Harlan Lieberman-Berg
e are intrinsically safe for (the vast majority) of the internet to enable and use on day 1. Sincerely, -- Harlan Lieberman-Berg ~hlieberman ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls

Re: [TLS] Are the AEAD cipher suites a security trade-off win with TLS1.2?

2016-03-20 Thread Harlan Lieberman-Berg
the same about CTR mode, or stream ciphers themselves? Sure -- it's definitely a lot harder to screw up "incrementing a counter" than it is all the stuff GCM requires you to do, but.... Sincerely, -- Harlan Lieberman-Berg ~hlieberman _

Re: [TLS] Support of integrity only cipher suites in TLS 1.3

2017-04-03 Thread Harlan Lieberman-Berg
nd that the risk was too high and the concerns brought up too late. Sincerely, -- Harlan Lieberman-Berg ~hlieberman ___ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls