>>>>> "ER" == Eric Rescorla <e...@rtfm.com> writes:

ER> Can you elaborate on this point a bit? I haven't been focusing on
ER> ChaCha, but we're not quite done with ChaCha yet, so if changes are
ER> needed, now would be the time.

The switch from 64 bit nonce + 64 bit counter to 96 bit nonce + 32 bit
counter means a max of 2**32 * 256 bits before a key update is needed, yes?

-JimC
-- 
James Cloos <cl...@jhcloos.com>         OpenPGP: 0x997A9F17ED7DAEA6

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to