Martin Rex <Martin.Rex at sap.com> writes: > It might be easier to _NOT_ key on the finished message, but on the > master secret instead. That was my conclusion as well, hence http://tools.ietf.org/html/draft-josefsson-sasl-tls-cb-00 which uses the TLS PRF interface. For -02 I also added hashing the Finished message, to match the semantics for connection/session (regardless of its definition) of draft-altman-tls-channel-bindings, but I'd prefer to avoid it completely. /Simon
Note Well: Messages sent to this mailing list are the opinions of the senders and do not imply endorsement by the IETF.