I have two questions about the transcript for the confirmation signal
<https://www.ietf.org/archive/id/draft-ietf-tls-esni-13.html#name-sending-helloretryrequest-2>
for HelloRetryRequests in ECH Draft 13:
1. Should ClientHelloInner1 be replaced with a message_hash message as
in TLS?
2. Is the entire HelloRetryRequest (with overwritten placeholder value)
included in the transcript or is the HRR only included up to the end of
the placeholder value?
I had assumed 1. yes and 2. the entire HRR, but an off-list conversation
left me unsure.
Best,
Dennis
_______________________________________________
TLS mailing list
TLS@ietf.org
https://www.ietf.org/mailman/listinfo/tls