On Thu, Mar 28, 2019, at 16:58, Scott Fluhrer (sfluhrer) wrote:
>  * 3.3.1. (Shares-concat) Concatenate key shares
> My concern with this is that there may be algorithms with variable key 
> share size (I don’t know of any right now, but ‘extensibility’); if we 
> do this, we would want internal length markers

Anything injective should work.

>  * 3.4.2. (Comb-XOR) XOR keys and then KDF
> This one makes me nervous. 

Me too.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to