Skip to content

Comment on Implementing a toy version of TLS 1.3parent

Comments

The Cloudflare blog entries on TLS 1.3 have some commentary (and link to more commentary from other sources) about this topic. Besides just getting rid of legacy cruft, simplifying the protocol helps limit downgrade attacks, reduces maintenance burden, and limits the observable behavior that various implementations might end up inadvertently depending on.

EDIT: https://www.imperialviolet.org/2016/05/16/agility.html is a good post about this.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.