Integrated: 8277307: Pre shared key sent under both session_ticket and pre_shared_key extensions

Daniel Jeliński djelinski at openjdk.java.net
Wed Jun 8 06:36:30 UTC 2022


On Fri, 27 May 2022 13:20:24 GMT, Daniel Jeliński <djelinski at openjdk.org> wrote:

> Session ticket extension should only contain pre-TLS1.3 stateless session tickets; it should not be used for sending TLS1.3 pre-shared keys.

This pull request has now been integrated.

Changeset: 4662e06b
Author:    Daniel Jeliński <djelinski at openjdk.org>
URL:       https://git.openjdk.java.net/jdk/commit/4662e06bff2cef7425c194a9cdd7a6fe7469179e
Stats:     19 lines in 2 files changed: 12 ins; 0 del; 7 mod

8277307: Pre shared key sent under both session_ticket and pre_shared_key extensions

Reviewed-by: coffeys, ascarpino

-------------

PR: https://git.openjdk.java.net/jdk/pull/8922



More information about the security-dev mailing list