I think I can take this bit: On Jul 10, 2016, at 06:51, Peter Dettman <peter.dett...@bouncycastle.org> wrote: > > I'm also curious whether there is a precedent in other RFCs for an > explicit minimum curve bits, or perhaps a de facto implementer's rule?
I’d be happy to be wrong here. but to my knowledge no there’s not been an explicit minimum for curve bits. There have however been similar (at least in my non-cryptographer mind) for RSA key sizes so if we wanted to define an explicit minimum curve bits then we could. spt _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls