Re: [TLS] Simpler backward compatibility rules for 0-RTT

2016-06-25 Thread Erik Nygren
There are also very common cases of using multiple CDNs or server farms with different capabilities but with the same host name, or of switching a live site between platforms. As others have mentioned, the behaviors need to be well defined and result in extra rtt rather than hard failure to allow 0

Re: [TLS] Remove EncryptedExtensions from 0-RTT

2016-06-25 Thread Subodh Iyengar
Was there a compelling reason to not just put the ticket age in the clear in the CHLO field as @davidben alluded to before. It seems to make it much simpler in general. With support for multiple tickets the server could issue multiple tickets at different times to make time correlation more dif