On 09/02/2016 12:27 PM, Hubert Kario wrote: > > what would be the reasons not to add it now? >
It seems that Yoav was faster than me, but the two main ones I had in mind were: We want the core protocol to be as small as possible while still fulfilling its goals. We already have extension mechanisms for adding new ciphers, so there is no need to have another one in the core spec as a backup [unless it's MTI]. We want to keep the number of changes down as we approach a final version, to lower the burden of (re)review, particularly by the cryptographers who are gracious enough to engage in analysis of the pre-final versions. -Ben
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls