>>>>> "ER" == Eric Rescorla <e...@rtfm.com> writes:
ER> Can you elaborate on this point a bit? I haven't been focusing on ER> ChaCha, but we're not quite done with ChaCha yet, so if changes are ER> needed, now would be the time. The switch from 64 bit nonce + 64 bit counter to 96 bit nonce + 32 bit counter means a max of 2**32 * 256 bits before a key update is needed, yes? -JimC -- James Cloos <cl...@jhcloos.com> OpenPGP: 0x997A9F17ED7DAEA6 _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls