Re: [TLS] What counts as the same ClientHello?

2017-09-04 Thread Hubert Kario
On Tuesday, 29 August 2017 13:20:33 CEST Hannes Tschofenig wrote: > Hi Noah, Todd, Ilari, > > the HRR is used for two purposes, namely > * to report an error (with the key shares), and > * for DoS protection. > > In both cases it feels excessive to require that the two ClientHellos > are the sa

Re: [TLS] What counts as the same ClientHello?

2017-09-04 Thread Ilari Liusvaara
On Thu, Aug 31, 2017 at 09:50:07AM +1000, Martin Thomson wrote: > On 30 August 2017 at 22:57, Ilari Liusvaara wrote: > > However, I identified a new category of extensions that I didn't notice > > before: Dependent on altered extensions. There are no such standardized > > extensions, but there is