On Mon, Jun 3, 2024, at 11:23, Filippo Valsorda wrote: > Thank you for sharing those! Could you filter down to TLS 1.3 only
That's not possible, sadly. > (since we are not going to add hybrids to TLS 1.2 anyway)? I assume > that after filtering to TLS 1.3, any non-X25519 connections are Hello > Retry Requests, since you only send an X25519 key share? We send a P-256 share in addition to an X25519 share. That might push our P-256 numbers higher than other implementations, to address your speculation. Those are answers that are better addressed with scanning tools though. _______________________________________________ TLS mailing list -- tls@ietf.org To unsubscribe send an email to tls-le...@ietf.org