>From my understanding of the code, in case of bad record mac an alert is sent to peer. The recipient application gets an error in SSL_read.
JB On 8/11/05, BG for OpenSSL <[EMAIL PROTECTED]> wrote: > TLS allows for the detection of a (post-handshake) replay attack > by detecting incorrect values of the sequence number in the MAC. > > However, I can't figure out what action is taken when an attack *is* > detected. Is an alert sent to the peer? How is the recipient application > informed? > > TIA > BigG > > ______________________________________________________________________ > OpenSSL Project http://www.openssl.org > User Support Mailing List openssl-users@openssl.org > Automated List Manager [EMAIL PROTECTED] > ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List openssl-users@openssl.org Automated List Manager [EMAIL PROTECTED]