Encryption

It's not supposed to replace TLS.
Also, it's not supposed to be as full-featured as currently existing crypto protocols. VPN encryption lies in the "complex but not necessary" category for "simple" crypto protocols.

The best out there: ciphersbyritter.com/LEARNING.HTM
if you want to start from the basics.

Use truecrypt

I don't see the point of a new protocol that can't replace TLS. It just means we'll end up in a mixed environment with both, doubling the amount of code that needs to be kept secure and complicating software that does encryption. I also have a feeling it's pointless to argue about on Holla Forums as no one here understands what TLS actually is and can't mentally separate it from SSL.

Btw also, you have no idea how much people depend on DLTS today. It got absolutely huge in the span of about 3 years. All those cancerous 'smart' devices you see are often doing telemetry over DTLS.

There's your problem.