EFail mitigations for S/MIME

Robert J. Hansen rjh at sixdemonbag.org
Thu May 17 02:40:58 CEST 2018


> IMHO the correct solution would be to switch to a true Authenticated
> Encryption mode - like AES-OCB or AES-GCM.

Tell it to the Working Group, please.  We don't get to write the RFC by
ourselves.

> Is there a chance to have this implemented soon?

No.  Get the WG to define it and GnuPG will implement it.



More information about the Gnupg-devel mailing list