On Fri, Jul 6, 2018 at 4:51 AM Martin Rex <m...@sap.com> wrote: > Martin Thomson <martin.thom...@gmail.com> wrote: > > The problem with DHE of course being that it uses the TLS 1.0 suites > > with the SHA1 MAC and with the MAC and encrypt in the wrong order. > > I'm confused about what you are thinking here.
Just that we don't implement MtE because it was hard and AEAD is better, that's all. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls