Re: 9.2.2 Cipher fallback and FF<->Jetty interop problem

Hi Eric,

On Mon, Sep 22, 2014 at 11:21:52AM -0700, Eric Rescorla wrote:
> > Ok but then if you wait on HTTP/3, 9.2.2 then precludes your ability to
> > select a more modern cipher category like the Aero example. So it doesn???t
> > seem to really meet the former case, and it certainly doesn???t meet the
> > latter.
> 
> I don't think that's true. 9.2.2 doesn't say you can't do non-AEAD. It says
> that you can't do stream or block. Rather:
> 
> "Clients MUST accept DHE sizes of up to 4096 bits. HTTP MUST NOT be used
> with cipher suites that use stream or block ciphers. Authenticated
> Encryption with Additional Data (AEAD) modes, such as the Galois Counter
> Model (GCM) mode for AES <Received on Tuesday, 23 September 2014 05:43:31 UTC

Follow Lee on X/Twitter - Father, Husband, Serial builder creating AI, crypto, games & web tools. We are friends :) AI Will Come To Life!

Check out: eBank.nz (Art Generator) | Netwrck.com (AI Tools) | Text-Generator.io (AI API) | BitBank.nz (Crypto AI) | ReadingTime (Kids Reading) | RewordGame | BigMultiplayerChess | WebFiddle | How.nz | Helix AI Assistant