osdir.com

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[users@httpd] Re: TLS 1.3


On 2018-03-28 (09:02 MDT), David Mehler <dave.mehler@xxxxxxxxx> wrote:
> 
> What are some advantages of 1.3?

Faster. Less kruft. Drops many near-EOL cryptos. But the main one is that is allows Perfect Forward Secrecy (PFS) which means that even is someone captures the traffic and stores it, and even if they interfere with the traffic actively at the time of communication, and then at some later time gets access to the private keys used by the client and the server, they STILL can't decrypt it.

<https://en.wikipedia.org/wiki/Forward_secrecy>

This is kind of the holy grail in cryptography.

-- 
Wife: Who are you talking to?
Husb: [on phone] Jon
Wife: Aren't you going to talk to me?
Husb: I talked to you at dinner, do I need to talk to you again?


---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx
For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx