On 26 November 2015 at 18:38, Xuelei Fan <xuelei....@vimino.com> wrote:
> What's the consideration to place selected_group out of the extensions filed
> in HelloRetryRequest?

An extension would work, except that I believe that extensions in
HelloRetryRequest are going to carry somewhat different semantics to
those in other Hello messages.

If we go to dynamically generated groups, then we can easily define a
new FFDHE code point to signal the use of a dynamic group.  Though I
think that I'd be sad about having to always spend an extra round trip
if it came to that.

Also, it's not much, but the explicit field keeps the message (a tiny
bit) smaller and easier to process.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to