> I don't like to guess, Let's not guess, let's ask the authors directly. > Can someone – probably one of the authors, not Ted – why they feel it is necessary to not allow derivative works? > In the past there have been many RFC’s that documented existing cryptographic algorithms: Blake2, ChaCha/Poly, etc. None of them say no derivatives. Why do you want no-derived-changes? Given that the IETF almost never does this, I would expect this to be a hard requirement to justify. -- last-call mailing list last-call@xxxxxxxx https://www.ietf.org/mailman/listinfo/last-call