On Wed, January 27, 2016 9:47 am, Martin Thomson wrote: > On 28 January 2016 at 02:17, Blumenthal, Uri - 0553 - MITLL > <u...@ll.mit.edu> wrote: >> Anon â!= Ephemeral, despite some similarities. > >>From a protocol perspective, they are the same. The distinction at > the protocol level between ECDH_RSA (for example) and ECDH_anon is > that ECDH_anon requires a ServerKeyShare message in the same way that > ECDHE_RSA does.
So? A static-static, static-ephemeral, and ephemeral-ephemeral all look the same from a protocol perspective too but they are very different and have very different properties. Dan. > I agree that Nikos' point is a good one, but we've implementations of > ECDHE_ that provide a stable value for their ephemeral key > (unfortunately, that's the default mode in NSS). > > _______________________________________________ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls