On 20 May 2016 at 15:41, Ilari Liusvaara <ilariliusva...@welho.com> wrote:
> - How is the capability signaled? New flag bits in session ticket
>   for these ciphersuites?

Yes, I realized it yesterday that I had neglected to define the bit
that this needs.  Of course a client could decide to do this
unilaterally.

> - This mechanism has session ticket lifetime limited by the certificate
>   lifetime, right?

There is a session ticket, which has a lifetime.  The certificate has
to be constant, so if that expires, then you can't connect.  So yes,
both limits would seem to apply.

_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls

Reply via email to