💾 Archived View for rawtext.club › ~sloum › geminilist › 001266.gmi captured on 2020-10-31 at 02:09:48. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2020-09-24)

-=-=-=-=-=-=-

<-- back to the mailing list

Three month spec freeze

solderpunk solderpunk at SDF.ORG

Tue Jun 2 22:15:08 BST 2020

- - - - - - - - - - - - - - - - - - - 

On Tue, Jun 02, 2020 at 10:59:23PM +0200, plugd wrote:

Is this really necessary? What's so awesome about 1.3 from a
layperson's perspective? I'm honestly asking, not just trying to be
contrary.

1.3 drastically reduces the range of permissible cryptographicprimitives which can be used. Instead of supporting dozens and dozensof different ciphersuites with opaque names ranging from "as secure asit gets" to "known to be broken for years", requiring carefulconfiguration and implementation to avoid shooting yourself in the footor being susceptible to downgrade attacks, 1.3 is basically foolproof.All the legacy cruft like RC4 is gone, every availble key agreementscheme offers perfect forward security, etc. It's definitely somethingto be excited about.

Cheers,Solderpunk