Perfect Forward Secrecy (PFS)
PFS ensures that compromise of long‑term keys does not compromise past session keys derived via ephemeral key exchange.
#crypto#rfc
Last updated: 2025-09-02T00:00:00.000Z
Evidence
RFC RFC 8446 Normative evidence
More context
TLS 1.3 mandates ephemeral (EC)DHE, providing forward secrecy by deriving unique keys per session.