> -----Original Message----- > From: TLS <tls-boun...@ietf.org> On Behalf Of Martin Thomson > Sent: Wednesday, August 17, 2022 7:05 PM > To: tls@ietf.org > Subject: Re: [TLS] WGLC for draft-ietf-tls-hybrid-design > > On Sat, Aug 13, 2022, at 04:13, Scott Fluhrer (sfluhrer) wrote: > > Well, if we were to discuss some suggested hybrids (and we now know > > the NIST selection), I would suggest these possibilities: > > > > - X25519 + Kyber512 > > - P256 + Kyber512 > > - X448 + Kyber768 > > - P384 + Kyber768 > > Any specific pairs of primitives should be specified in a different document > to > this one.
Actually, that was our original intention with this draft - to specify the framework, and to have other documents specify the actual pairs. However, I believe that the sense of the working group is that they want this draft to start with a limited number of options (and people, please correct me if I'm wrong). _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls