> On Thu, Dec 17, 2015 at 3:02 PM, Hugo Krawczyk <h...@ee.technion.ac.il> wrote: >> I have mentioned this in private conversations but let me say this here: I >> would prefer that the nonces be explicitly concatenated to the handshake >> hash…. > > This change doesn't make implementation or specification significantly more > difficult.
Let’s do it. > Does anyone else object or feel it makes analysis harder? :) :-)
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls