Eric Rescorla writes: > Given that any particular connection can only be protected with a single > algorithm, it's not clear to me how the world is improved by having multiple > algorithms with roughly the same performance properties.
Does this imply a position on the last-call topic, given that ECC+PQ has roughly the same performance properties as non-hybrid PQ? Or are you looking for more information? ---D. J. Bernstein ===== NOTICES ===== This document may not be modified, and derivative works of it may not be created, and it may not be published except as an Internet-Draft. (That sentence is the official language from IETF's "Legend Instructions" for the situation that "the Contributor does not wish to allow modifications nor to allow publication as an RFC". I'm fine with redistribution of copies of this document; the issue is with modification.) _______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
