Just tested with openssl 1.1.1b and haproxy 1.9.7, it appears no success, you are right :)
On Thu, May 2, 2019 at 8:45 PM Olivier Houchard <ohouch...@haproxy.com> wrote: > > Hi Igor, > > On Thu, May 02, 2019 at 08:39:58PM +0800, Igor Pav wrote: > > Hello, can we use TLS zero RTT in server-side now? Just want to reduce > > more latency when using SSL talk to the backend servers(also running > > haproxy). > > > > Thanks in advance. Regards > > > > It should work if you add "allow-0rtt" on your server line. However it hasn't > been tested for some time, and was written with a development version of > OpenSSL 1.1.1, so I wouldn't be entirely surprised if it didn't work anymore. > > Regards, > > Olivier