On 20 May 2016 at 15:41, Ilari Liusvaara <ilariliusva...@welho.com> wrote: > - How is the capability signaled? New flag bits in session ticket > for these ciphersuites?
Yes, I realized it yesterday that I had neglected to define the bit that this needs. Of course a client could decide to do this unilaterally. > - This mechanism has session ticket lifetime limited by the certificate > lifetime, right? There is a session ticket, which has a lifetime. The certificate has to be constant, so if that expires, then you can't connect. So yes, both limits would seem to apply. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls