Jacob Bachmeyer <[email protected]> writes: >The AtE mode has problems, but is still supported in TLS1.2. (Why was EtA >not also introduced in TLS1.2?)
It was: https://datatracker.ietf.org/doc/html/rfc7366 So you don't need any new modes, just an extension to signal its presence and swapping the order of the processing operations if present. Peter.
