Hi Simon,

Op za 12 aug 2023 om 16:00 schreef Simon Mangel <simon.man...@rwth-aachen.de
>:

> Note: We have already found an adaption for TLS 1.3 in academic work
> [Schwabe2021], where instead of caching the whole chain, each
> certificate is cached separately.
> This however leads to inconsistent signaling, as there is no
> differentiation between a choice of cached certificate chains and
> separately cached certificates of a single chain.
>
> As the author, I want to clarify that the variant that we made was
optimized for least-effort, and you are probably correct in that there are
better ways to do it.

Also, as the author of the AuthKEM proposal, the stored-public-key
mechanism of which also originates in [Schwabe2021], I should obviously
plug that draft here as well :-) (Expect an updated version soon*)*

Cheers,

Thom


[Schwabe2021] More Efficient Post-quantum KEMTLS with Pre-distributed
> Public Keys, https://doi.org/10.1007/978-3-030-88418-5_1
> https://thomwiggers.nl/publication/kemtlspdk/
>
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
>
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to