Hubert Kario <hka...@redhat.com> writes: >miTLS does accept Application Data when it is send between Client Hello and >Client Key Exchange and rejects it when it is sent between Change Cipher Spec >and Finished.
Given that miTLS is a formally verified implementation, would this imply that there's a problem with the verification? "Beware of bugs in the above code; I have only proved it correct, not tried it"? Peter. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls