Re: how is it possible to confirm that a TLS ticket was used?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> On Feb 5, 2019, at 10:41 AM, Sam Roberts <vieuxtech@xxxxxxxxx> wrote:
> 
>> However, because in TLS 1.3, session
>> tickets are sent *after* the completion of the handshake, it is
>> possible that the session handle you're saving is the one that does
>> not yet have any associated tickets, because they've not yet been
>> received.
> 
> I'm saving the session that is passed to the callback in
> SSL_CTX_sess_set_new_cb() as described in
> https://wiki.openssl.org/index.php/TLS1.3#Sessions.

And then?  How are you restoring the saved session for re-use?

> 
>>    posttls-finger: smtp.dukhovni.org[100.2.39.101]:25: Reusing old session
> 
> What API are you using to confirm that the ticket was used to resume
> the session? SSL_session_reused?

Yes.

-- 
	Viktor.

-- 
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users



[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux