> On Thu, Dec 17, 2015 at 3:02 PM, Hugo Krawczyk <h...@ee.technion.ac.il> wrote:
>> I have mentioned this in private conversations but let me say this here: I
>> would prefer that the nonces be explicitly concatenated to the handshake
>> hash….
>  
> This change doesn't make implementation or specification significantly more
> difficult.

Let’s do it.

> Does anyone  else object or feel it makes analysis harder? :)

:-)



Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to