On Wed, Mar 18, 2026, at 14:41, Viktor Dukhovni wrote: > The specification already correctly discourages reuse, changing this to > a MUST, especially when enforcment on the receiving end is neither very > practical, nor wise, rather like a feel-good exercise.
As others have noted, many different analyses of the protocol have assumed fresh shares, so the security guarantees rely on having fresh shares. So not completely pointless, unless you don't feel like security analysis is useful. _______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
