Skip to content

Conversation

@julek-wolfssl
Copy link
Member

Add validation to ensure the cipher suite in the ServerHello matches the one specified in the HelloRetryRequest.

- Add validation to ensure the cipher suite in the ServerHello matches the one specified in the HelloRetryRequest.
- test_TLSX_CA_NAMES_bad_extension: use the same ciphersuite in HRR and SH
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[Bug]: RFC 8446 violation : WolfSSL accept HelloRetryRequests with changing ciphers

1 participant