On Fri, Apr 29, 2016 at 11:30:02AM -0700, Eric Rescorla wrote: > On Fri, Apr 29, 2016 at 10:46 AM, Ilari Liusvaara <ilariliusva...@welho.com> > wrote: > > > > > > This doesn't seem awesome from the client's perspective. I'm trying to > > make > > > the ordinary PSK-resumption design less of a special case. > > > > Well, the client needs to keep track of the ALP anyway. If for nothing > > else, to check that the server isn't trying to do anything crazy. > > > > I don't see why that's true in the absence of 0-RTt. There's no reason why > the > server shouldn't be able to select any ALPN offers the client provides > regardless > of the original offer..
I mean in case where 0-RTT was accepted. Otherwise normal ALPN negotiation can take place (and by existing definition of ALPN, has to). -Ilari _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls