[Ach] favor DHE over ECDHE? (was: preference of curves in ECC - ECDSA, ECDH)

Aaron Zauner azet at azet.org
Mon Mar 10 10:53:08 CET 2014


Hi,

Torsten Gigler wrote:
> Hi,
> 
> propabely you discussed this already, but I did not find it in the List:
> 
> What do you think about to favor generally DHE ciphers over ECDHE, as
> long it is not clear which EC curves are save available by clients ans
> servers?
Well. The issue is that DHE without elliptic curves is on a order of
magnitude more costly than ECDHE. This is also why big sites like
Google, Twitter and the likes prefer ECDHE.

Aaron

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: OpenPGP digital signature
URL: <http://lists.cert.at/pipermail/ach/attachments/20140310/4323c349/attachment.sig>


More information about the Ach mailing list