[openssl-dev] s3_clnt.c changes regarding external pre-shared secret seem to break EAP-FAST

Dr. Stephen Henson steve at openssl.org
Thu Mar 19 15:49:02 UTC 2015


On Thu, Mar 19, 2015, Erik Tkal wrote:

> 
> If I do not send a sessionID in the clientHello but do send a valid
> sessionTicket extension, the server goes straight to changeCipherSpec and
> the client generates an UnexpectedMessage alert.
> 

Does the server send back an empty session ticket extension?

Steve.
--
Dr Stephen N. Henson. OpenSSL project core developer.
Commercial tech support now available see: http://www.openssl.org


More information about the openssl-dev mailing list