@techreport{green-tls-static-dh-in-tls13-01, number = {draft-green-tls-static-dh-in-tls13-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-green-tls-static-dh-in-tls13/01/}, author = {Matthew Green and Ralph Droms and Russ Housley and Paul Turner and Steve Fenter}, title = {{Data Center use of Static Diffie-Hellman in TLS 1.3}}, pagetotal = 15, year = 2017, month = jul, day = 3, abstract = {Unlike earlier versions of TLS, current drafts of TLS 1.3 have instead adopted ephemeral-mode Diffie-Hellman and elliptic-curve Diffie-Hellman as the primary cryptographic key exchange mechanism used in TLS. This document describes an optional configuration for TLS servers that allows for the use of a static Diffie-Hellman private key for all TLS connections made to the server. Passive monitoring of TLS connections can be enabled by installing a corresponding copy of this key in each monitoring device.}, }