From: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] > So basically triple-DH. > > As with any new mode, it would require security analysis (which is not > exactly simple).
Thanks for the keyword, Ilari: I've now found http://ieee-security.org/TC/SP2015/papers-archived/6949a232.pdf which talks about triple-DH. I'll read up some more on it and see if there's a reasonable security analysis. Tony _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls