I am still new with ssl and tls. I am reading the tls protocol right now. Somehow i don't understand why tls need the PRF function to generate the master secret when it already has the pre-master secret by the key exchange protocol. Why can't tls used the pre-master secret or the pre-master secret isn't secure enough. ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]