On 25/09/15 11:25, Hubert Kario via RT wrote:
> 
>       A Finished message is always sent immediately after a change
>       cipher spec message to verify that the key exchange and
>       authentication processes were successful.

This is perhaps the key statement. It could do with being more explicit
if the intent here is to disallow interleaved app data.

Matt

_______________________________________________
openssl-dev mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev

Reply via email to