I would like to suggest that one additional value be added to the list of GREASE values for named groups.

Section 2 of RFC 7919 says:

   Codepoints in the "Supported Groups Registry" with a high byte of
   0x01 (that is, between 256 and 511, inclusive) are set aside for
   FFDHE groups.

Section 4 of RFC 7919 says:

   If a compatible TLS server receives a Supported Groups extension from
   a client that includes any FFDHE group (i.e., any codepoint between
   256 and 511, inclusive, even if unknown to the server), and if none
   of the client-proposed FFDHE groups are known and acceptable to the
   server, then the server MUST NOT select an FFDHE cipher suite.


So, it would be helpful in testing this requirement of RFC 7919 if there were one GREASE value for named groups between 261 and 507 (according to https://www.iana.org/assignments/tls-parameters/tls-parameters.xhtml#tls-parameters-8, these are the values in the specified range that are currently unassigned).

Thank you,

David

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to