I would like to suggest that one additional value be added to the list
of GREASE values for named groups.
Section 2 of RFC 7919 says:
Codepoints in the "Supported Groups Registry" with a high byte of
0x01 (that is, between 256 and 511, inclusive) are set aside for
FFDHE groups.
Section 4 of RFC 7919 says:
If a compatible TLS server receives a Supported Groups extension from
a client that includes any FFDHE group (i.e., any codepoint between
256 and 511, inclusive, even if unknown to the server), and if none
of the client-proposed FFDHE groups are known and acceptable to the
server, then the server MUST NOT select an FFDHE cipher suite.
So, it would be helpful in testing this requirement of RFC 7919 if there
were one GREASE value for named groups between 261 and 507 (according to
https://www.iana.org/assignments/tls-parameters/tls-parameters.xhtml#tls-parameters-8,
these are the values in the specified range that are currently unassigned).
Thank you,
David
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls