On Mon, Jun 3, 2024, at 11:23, Filippo Valsorda wrote:
> Thank you for sharing those! Could you filter down to TLS 1.3 only 

That's not possible, sadly.

> (since we are not going to add hybrids to TLS 1.2 anyway)? I assume 
> that after filtering to TLS 1.3, any non-X25519 connections are Hello 
> Retry Requests, since you only send an X25519 key share?

We send a P-256 share in addition to an X25519 share.  That might push our 
P-256 numbers higher than other implementations, to address your speculation.  
Those are answers that are better addressed with scanning tools though.

_______________________________________________
TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to