|
|
|
|
|
by remram
1336 days ago
|
|
If you don't have this downgrade, then clients can't talk with servers that haven't been upgraded yet! This means either that: * you expect all servers to upgrade immediately, or at least faster than clients, or * you delay upgrading clients you know to be insecure until servers had time to upgrade, or * you are ok with breaking a significant portion of the network for every protocol update. Either way, your proposal makes no sense for the internet. Additionally, this is already possible with the current negotiation scheme. You can have clients refuse old algorithms (and they do). Your proposal doesn't improve anything there or anywhere else. |
|