Hiya,
On 13/12/2023 13:18, Bas Westerbaan wrote:
Not true. ECH, as-is, can be configured to use a PQ KEM. (Whether it's deployable, and whether its performance is acceptable, is something we should figure out.)
I guess we're just interpreting "as-is" differently. What I meant by "as-is" was an implementation of the current draft. I agree that we can figure out how to use a PQ KEM with ECH but that's work still to be done, and hence wasn't included in what I meant by "ECH as-is." Cheers, S. PS: I do not want us to hold up producing the ECH RFC while we figure that out - we should get the current thing out the door first!
OpenPGP_0xE4D8E9F997A833DD.asc
Description: OpenPGP public key
OpenPGP_signature.asc
Description: OpenPGP digital signature
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls