Re: [TLS] 0-RTT profiles

2018-08-06 Thread Benjamin Kaduk
On Mon, Aug 06, 2018 at 07:01:42PM +0100, Joseph Birr-Pixton wrote: > Hello, > > > Application protocols MUST NOT use 0-RTT data without a profile that > > defines its use. > > That profile needs to identify which messages or interactions are safe to > > use with 0-RTT > > and how to handle the

Re: [TLS] 0-RTT profiles

2018-08-06 Thread Ilari Liusvaara
On Mon, Aug 06, 2018 at 07:01:42PM +0100, Joseph Birr-Pixton wrote: > Hello, > > > Application protocols MUST NOT use 0-RTT data without a profile that > > defines its use. > > That profile needs to identify which messages or interactions are safe to > > use with 0-RTT > > and how to handle the

[TLS] 0-RTT profiles

2018-08-06 Thread Joseph Birr-Pixton
Hello, > Application protocols MUST NOT use 0-RTT data without a profile that defines > its use. > That profile needs to identify which messages or interactions are safe to use > with 0-RTT > and how to handle the situation when the server rejects 0-RTT and falls back > to 1-RTT. 0-RTT has now