Hacker News new | ask | show | jobs
by Hello71 3186 days ago
aiui getting the current keys won't magically let you decrypt those three years of traffic. that's the whole point of rotation.
1 comments

Yes, I wasn't trying to say rotation is useless - just highlight that n servers still lead to n avenues of getting at traffic for all n servers, and that cloudflare did something to deal with the pfs issue. It's worse than n servers without session resumption, but better than it could be.

[ed: per https://news.ycombinator.com/item?id=15360922 the window is 18 hours]