On 3/3/2010 4:52 PM, Mladen Turk wrote: > On 03/03/2010 11:45 PM, William A. Rowe Jr. wrote: >> On 3/3/2010 4:44 PM, Mladen Turk wrote: >>> >>> Sure that could be the solution if there is no option to tell the >>> server to make that decision. >> >> It's not the server's to make, this alert follows the TLS specification. > > Didn't meant that, but anyhow... > Still doesn't smell "clean", but seems everyone else > think this is not an issue, so fine with me.
If you want a workaround that is, in absolute terms, a server decision, then we just ensure that an 'SSLAlertTimeout nnn' directive will accept an argument of 0, timeout immediately.
