-
Notifications
You must be signed in to change notification settings - Fork 2.7k
Open
Labels
api-breakThis issue/PR breaks the API and must wait for a new major versionThis issue/PR breaks the API and must wait for a new major versioncomponent-tls
Description
Static ECDH is officially deprecated by RFC 9325. It does not exist in TLS 1.3. OpenSSL stopped supporting static (EC)DH in its 1.1.0 release in 2016.
Does Mbed TLS 4 still need to support static ECDH?
(Related: #7679 — if we keep them, they might be disabled by default.)
Mailing list thread: https://lists.trustedfirmware.org/archives/list/mbed-tls@lists.trustedfirmware.org/thread/AVTTVTS654DD45NYRCWA6G4WI4AOCYAH/
Metadata
Metadata
Assignees
Labels
api-breakThis issue/PR breaks the API and must wait for a new major versionThis issue/PR breaks the API and must wait for a new major versioncomponent-tls
Type
Projects
Status
Implementation in progress
Status
1.0/4.0 SHOULDs