{
  "id": 21805,
  "title": "RFC 10015: Deprecating Obsolete Key Exchange Methods in TLS 1.2 and DTLS 1.2",
  "url": "https://urgent.news/2026/08/01/rfc-10015-deprecating-obsolete-key-exchange-methods-in-tls-1-2-and",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-01T23:44:55.000Z",
  "source": {
    "name": "Hacker News",
    "slug": "hacker-news",
    "url": "https://www.rfc-editor.org/rfc/rfc10015.html"
  },
  "original_language": "en",
  "account": "RFC 10015 addresses the deprecation of obsolete key exchange methods in TLS 1.2 and DTLS 1.2. Specifically, the document discourages the use of Diffie-Hellman (DH) over a finite field and RSA key exchanges in (D)TLS 1.2. Additionally, static Elliptic Curve Diffie-Hellman (ECDH) cipher suites are discouraged. These recommendations only apply to (D)TLS 1.2, as earlier versions (1.0, 1.1) are deprecated and (D)TLS 1.3 does not utilize these affected algorithms. The document updates various RFCs to either deprecate or discourage the use of cipher suites employing the aforementioned key exchange methods. The problems with these key exchanges stem from a lack of forward secrecy, implementation vulnerabilities, and susceptibility to side-channel attacks.",
  "summary": null,
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}