[openssl-project] Reuse of PSKs between TLSv1.2 and TLSv1.3

Matt Caswell matt at openssl.org
Fri Aug 10 08:43:26 UTC 2018

On 09/08/18 10:31, Matt Caswell wrote:

> I think perhaps a vote is the only way forward then. Does this vote text
> seem reasonable?
> "We should remove the TLSv1.2 to TLSv1.3 PSK compatibility mechanism as
> discussed in issue 6490. If TLSv1.2 PSKs are configured (and not TLSv1.3
> PSKs) then we should disable TLSv1.3."
> If the vote fails then we will, by default, stick with the status quo
> (which is effectively option 2). If it passes then that is option 1.

I went ahead and started this vote. I'll report back with the results as
soon as we have them.


More information about the openssl-project mailing list