>>>>> "ER" == Eric Rescorla <[email protected]> writes:
ER> Can you elaborate on this point a bit? I haven't been focusing on ER> ChaCha, but we're not quite done with ChaCha yet, so if changes are ER> needed, now would be the time. The switch from 64 bit nonce + 64 bit counter to 96 bit nonce + 32 bit counter means a max of 2**32 * 256 bits before a key update is needed, yes? -JimC -- James Cloos <[email protected]> OpenPGP: 0x997A9F17ED7DAEA6 _______________________________________________ TLS mailing list [email protected] https://www.ietf.org/mailman/listinfo/tls
