> Nist recently posted a raccomandation very recently (IN DRAFT)
> http://csrc.nist.gov/publications/drafts/800-52-rev1/draft_sp800_52_r1.pdf

If you ignore the bits about FIPS-140 and SP800-90A, its not bad. But
fairly obvious.

It seems to be missing a couple of things, though:

* A preference ordering for ciphersuites.

* Certificate Transparency (mostly kidding, but...)

