Hubert Kario <hka...@redhat.com> writes:

>miTLS does accept Application Data when it is send between Client Hello and
>Client Key Exchange and rejects it when it is sent between Change Cipher Spec
>and Finished.

Given that miTLS is a formally verified implementation, would this imply that
there's a problem with the verification?  "Beware of bugs in the above code; I
have only proved it correct, not tried it"?

Peter.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to