> On Nov 9, 2018, at 11:52 AM, Yoav Nir <ynir.i...@gmail.com> wrote:
>> Nor have I, and I rather think that introducing fixed-(EC)DH ciphers into
>> TLS was a mistake, and glad to see them gone in TLS 1.3.
> FWIW RFC 8422 also deprecates them for TLS 1.2 and earlier.

Great!  Thanks.  I see that in:

   5.5.  Certificate Request


Mind you, as that text is in the context of "Certificate Request" some
might not read to understand that they're also deprecated for the server
certificate, but we can hope that'll be understood implicitly.


TLS mailing list

Reply via email to