Re: [TLS] Issue 56: AES as MTI
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] Issue 56: AES as MTI



I support this suggestion. S/MIME just made the transition from 3DES to AES as the mandatory to implement encryption algorithm. (3DES is still a SHOULD in S/MIME.)

I think the mandatory to implement mode should remain CBC. This will be less of an interoperability concern. Earlier versions of TLS offered support for AES-CBC, but the authenticated encryption modes like AES-GCM will not be available until TLS 1.2 is complete. So, AES-CBC has a much better backward compatibility situation.

Russ

At 07:11 PM 9/12/2007, Eric Rescorla wrote:
Pasi suggests making AES the mandatory to implement encryption
algorithm in TLS 1.2. Thoughts?

-Ekr

_______________________________________________
TLS mailing list
TLS at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls


_______________________________________________
TLS mailing list
TLS at lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.