On 24 February 2016 at 08:34, Watson Ladd <watsonbl...@gmail.com> wrote: > And if we require a DH+sign every resumption, we don't gain anything > over the full exchange except 0-RTT. Why is this server liveness issue > not considered a problem for TLS 1.2 resumption?
It wouldn't be a requirement, merely an option. In 1.2, resumption and false start have the same latency profile. Here, resumption will be faster. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls