> Same kind of auditor who tells you that you can’t replace the library with the > next version that fixes the buffer overflow because it was the previous > version that was certified.
In their defense, you do have to prove that this fix was the ONLY change. :) _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls