Deprecating Obsolete Key Exchange Methods in TLS 1.2
This document deprecates the use of RSA key exchange and Diffie
Hellman over a finite field in TLS 1.2, and discourages the use of
static elliptic curve Diffie Hellman cipher suites.
Note that these prescriptions apply only to TLS 1.2 since TLS 1.0 and
1.1 are deprecated by [RFC8996] and TLS 1.3 either does not use the
affected algorithm or does not share the relevant configuration
options.