Gary said:
>> You can't precompute cookies.  They contain S2C and C2S which depend
>> on the TLS sesson key.
> I see no such requirement in the Proposed RFC.  My expectation is exactly the
> reverse.  Did I miss something? 

The cookie contains S2C and C2S encrypted with with the master key.
S2C and C2S depend on the TLS session key.

Which part(s) don't you agree with?


-- 
These are my opinions.  I hate spam.



_______________________________________________
devel mailing list
devel@ntpsec.org
http://lists.ntpsec.org/mailman/listinfo/devel

Reply via email to