On Wed, January 27, 2016 9:47 am, Martin Thomson wrote:
> On 28 January 2016 at 02:17, Blumenthal, Uri - 0553 - MITLL
> <u...@ll.mit.edu> wrote:
>> Anon  ‎!= Ephemeral, despite some similarities.
>
>>From a protocol perspective, they are the same.  The distinction at
> the protocol level between ECDH_RSA (for example) and ECDH_anon is
> that ECDH_anon requires a ServerKeyShare message in the same way that
> ECDHE_RSA does.

  So? A static-static, static-ephemeral, and ephemeral-ephemeral
all look the same from a protocol perspective too but they are
very different and have very different properties.

  Dan.

> I agree that Nikos' point is a good one, but we've implementations of
> ECDHE_ that provide a stable value for their ephemeral key
> (unfortunately, that's the default mode in NSS).
>
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
>


_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to