Tuesday, 20 August 2013

Fate of Application messages in middle of an SSL renegotiation

Fate of Application messages in middle of an SSL renegotiation

This is a question which I believe the RFC is silent about:
http://tools.ietf.org/html/rfc5246
When an SSL connection is established, and application messages being
exchanged between client and server, if at a pt of time a renegotiation is
triggered, what should happen to those application messages that are sent
while both ends are still negotiating.. ? Are they discarded ? Do they
cause renegotiation to fail ?
Thanks !

No comments:

Post a Comment