Le 4/23/14 5:09 PM, Jeff MAURY a écrit : > - SSL: We've refactored the SSL process to be more event oriented, but I > think we should complete it, mainly related to rehandshake
After having read this : http://blog.cryptographyengineering.com/2014/04/attack-of-week-triple-handshakes-3shake.html I'm wondering if it wouldn't be better to explicitely claim that we won't support renegociation ? -- Regards, Cordialement, Emmanuel Lécharny www.iktek.com