On Mon, Nov 23, 2015 at 10:28:41AM -0800, Martin Thomson wrote: > >From the issue: > > I don't want to see this change to a relative time. That will mess > with our ability to create ServerConfiguration objects that live > outside of the handshake. > > I have no real objection to expanding this to 64bit though. (I'm > personally OK with stating that this is modulo 2^32, but recognize how > that might result in problems.)
I got the idea of using 32-bit sequence number arithmetic there too (window is -2G to 2G seconds around current time). I don't suppose any key will need to have TTL of over ~68 years... -Ilari _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls