On Thu, Jan 23, 2020 at 09:43:21AM -0800, Watson Ladd wrote: > Sending a new ticket doesn't force clients to store it.
Sure, but if the old ticket will not be accepted again then the client will incur a full handshake later. The client doesn't know if the old ticket will or will not be accepted again. Extending the protocol to have the server signal that bit will require new OpenSSL extensions, which is why that is not a sufficiently good response to the Postfix issue. Nico -- _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls