RFR: 8277307: Pre shared key sent under both session_ticket and pre_shared_key extensions [v2]

Anthony Scarpino ascarpino at openjdk.java.net
Wed Jun 8 05:14:33 UTC 2022


On Thu, 2 Jun 2022 21:02:16 GMT, Daniel Jeliński <djelinski at openjdk.org> wrote:

>> Session ticket extension should only contain pre-TLS1.3 stateless session tickets; it should not be used for sending TLS1.3 pre-shared keys.
>
> Daniel Jeliński has updated the pull request incrementally with one additional commit since the last revision:
> 
>   different check for TLS13

Marked as reviewed by ascarpino (Reviewer).

please make sure all jdk_security tests and tier1 tests pass before integrating

-------------

PR: https://git.openjdk.java.net/jdk/pull/8922



More information about the security-dev mailing list