Re: [TLS] Short Ephermal Diffie-Hellman keys

pgut001@cs.auckland.ac.nz (Peter Gutmann) Wed, 16 May 2007 03:49 UTC

Return-path: <tls-bounces@lists.ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1HoAWR-0006vE-M9; Tue, 15 May 2007 23:49:55 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1HoAWQ-0006v8-4F for tls@lists.ietf.org; Tue, 15 May 2007 23:49:54 -0400
Received: from larry.its.auckland.ac.nz ([130.216.10.122] helo=mailhost.auckland.ac.nz) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1HoAWN-0004AL-O9 for tls@lists.ietf.org; Tue, 15 May 2007 23:49:54 -0400
Received: from localhost (localhost.localdomain [127.0.0.1]) by mailhost.auckland.ac.nz (Postfix) with ESMTP id 033E41841E; Wed, 16 May 2007 15:49:48 +1200 (NZST)
X-Virus-Scanned: by amavisd-new at mailhost.auckland.ac.nz
Received: from mailhost.auckland.ac.nz ([127.0.0.1]) by localhost (larry.its.auckland.ac.nz [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id B45oJG9eSIO1; Wed, 16 May 2007 15:49:47 +1200 (NZST)
Received: from iris.cs.auckland.ac.nz (iris.cs.auckland.ac.nz [130.216.33.152]) by mailhost.auckland.ac.nz (Postfix) with ESMTP id DAF3B183FF; Wed, 16 May 2007 15:49:47 +1200 (NZST)
Received: from medusa01.cs.auckland.ac.nz (medusa01.cs.auckland.ac.nz [130.216.34.33]) by iris.cs.auckland.ac.nz (Postfix) with ESMTP id 3D9D751400E; Wed, 16 May 2007 15:49:47 +1200 (NZST)
Received: from pgut001 by medusa01.cs.auckland.ac.nz with local (Exim 3.36 #1 (Debian)) id 1HoAWN-0000vl-00; Wed, 16 May 2007 15:49:51 +1200
From: pgut001@cs.auckland.ac.nz
To: lists@drh-consultancy.demon.co.uk, tls@lists.ietf.org
Subject: Re: [TLS] Short Ephermal Diffie-Hellman keys
In-Reply-To: <4649D2FD.2020309@drh-consultancy.demon.co.uk>
Message-Id: <E1HoAWN-0000vl-00@medusa01.cs.auckland.ac.nz>
Date: Wed, 16 May 2007 15:49:51 +1200
X-Spam-Score: 0.5 (/)
X-Scan-Signature: 30ac594df0e66ffa5a93eb4c48bcb014
Cc:
X-BeenThere: tls@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/tls>
List-Post: <mailto:tls@lists.ietf.org>
List-Help: <mailto:tls-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@lists.ietf.org?subject=subscribe>
Errors-To: tls-bounces@lists.ietf.org

Dr Stephen Henson <lists@drh-consultancy.demon.co.uk> writes:

>Speaking of which what do people think about including the sub prime value
>(aka "q") as an optional value in DH parameters in a TLS 1.2 handshake?

It's a good idea, I've been wanting that for awhile (SSH should be doing this
as well).

Peter.

_______________________________________________
TLS mailing list
TLS@lists.ietf.org
https://www1.ietf.org/mailman/listinfo/tls