On Sat, Dec 5, 2015 at 9:48 PM, Peter Gutmann <pgut...@cs.auckland.ac.nz> wrote: > Watson Ladd <watsonbl...@gmail.com> writes: > >>please cite the sentence of the TLS RFC which prohibits accepting application >>data records during the handshake. > > Please cite the sentence of the TLS RFC which prohibits accepting SSH messages > during the handshake. > > Please cite the sentence of the TLS RFC which prohibits executing > /usr/games/hack during the handshake. > > Please cite the sentence of the TLS RFC which prohibits reformatting the > user's hard drive during the handshake. > > (This debate is pointless and probably annoying everyone else, so I'll bow out > now).
So what basis do you have for your assertion that you aren't supposed to accept data between Client Hello and Client Key Exchange? I think on the contrary that interleaved data was intended to be handled transparently: so long as the Finished message goes after the CCS message, with no intervening data, each record layer is associated to one of two handshakes unambiguously. > > Peter. -- "Man is born free, but everywhere he is in chains". --Rousseau. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls