Skip to content

crypto/tls: disable earlyData extension in SessionTicket if didHRR #76462

@rbqvq

Description

@rbqvq

Proposal Details

Mainstream browsers do not modify curve preferences.

Therefore, we recommend that session tickets in the HRR path should not include the early-data extension, to avoid potential early-data rejection and unnecessary retransmissions, saving bandwidth.

@golang/security

Metadata

Metadata

Assignees

No one assigned

    Labels

    NeedsInvestigationSomeone must examine and confirm this is a valid issue and not a duplicate of an existing one.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions