To me, the argument against this comes down to this: The 0RTT data has different security properties than the post-handshake data, and TLS implementations should not hide that difference from applications.
-- Senior Architect, Akamai Technologies Member, OpenSSL Dev Team IM: [email protected] Twitter: RichSalz
_______________________________________________ TLS mailing list [email protected] https://www.ietf.org/mailman/listinfo/tls
