Re: [TLS] TLS renegotiation issue
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [TLS] TLS renegotiation issue



On Thu, Nov 05, 2009 at 02:21:31PM -0600, Nicolas Williams wrote:
> On Thu, Nov 05, 2009 at 11:09:51AM -0800, Eric Rescorla wrote:
> > On Thu, Nov 5, 2009 at 10:46 AM, Nicolas Williams
> > > [...]
> > 
> > This isn't enough. If you look at the diagram you can see that the
> > client never experiences a renegotiation.
> 
> That's one diagram.  There's other cases, but even in the case you

Oh, never mind.  I missed one attack scenario, the one in your doc.

Nico
-- 

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.