RFC 10015: Deprecating Obsolete Key Exchange Methods in TLS 1.2 and DTLS 1.2
Summary
RFC 10015 from IETF deprecates obsolete TLS 1.2/DTLS 1.2 key exchanges, notably non ephemeral DH and RSA, and discourages static ECDH cipher suites. It updates a broad set of older RFCs to phase out affected cipher suites, clarifies requirements language, and provides security guidance including references to known attacks such as Raccoon and invalid curve attacks.