Re: [TLS] TLS 1.3 Key Schedule

2015-09-04 Thread Eric Rescorla
On Fri, Sep 4, 2015 at 8:58 AM, Russ Housley wrote: > Eric: > > I looked at Hugo's message in the context of the table in Section 7.1: > > Key ExchangeStatic Secret (SS)Ephemeral Secret (ES) > --- > (EC

Re: [TLS] TLS 1.3 Key Schedule

2015-09-04 Thread Russ Housley
Eric: I looked at Hugo's message in the context of the table in Section 7.1: Key ExchangeStatic Secret (SS)Ephemeral Secret (ES) --- (EC)DHE Client ephemeral Client ephemeral

Re: [TLS] TLS 1.3 Key Schedule

2015-09-04 Thread Eric Rescorla
See: http://www.ietf.org/mail-archive/web/tls/current/msg17184.html On Fri, Sep 4, 2015 at 8:27 AM, Russ Housley wrote: > In Section 7.1, the document says: > > 4. finished_secret = HKDF-Expand-Label(xSS, > "finished secret", >

[TLS] TLS 1.3 Key Schedule

2015-09-04 Thread Russ Housley
In Section 7.1, the document says: 4. finished_secret = HKDF-Expand-Label(xSS, "finished secret", handshake_hash, L) 5. resumption_secret = HKDF-Expand-Label(master_secret,