gnunet-svn
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[GNUnet-SVN] [gnurl] 98/173: mbedtls: disable TLS session tickets


From: gnunet
Subject: [GNUnet-SVN] [gnurl] 98/173: mbedtls: disable TLS session tickets
Date: Fri, 24 Feb 2017 14:02:00 +0100

This is an automated email from the git hooks/post-receive script.

ng0 pushed a commit to annotated tag gnurl-7.53.1
in repository gnurl.

commit ab08d82648f6deed7e698f1e11b5e3151e8f2f79
Author: Michael Kaufmann <address@hidden>
AuthorDate: Sat Jan 28 20:14:54 2017 +0100

    mbedtls: disable TLS session tickets
    
    SSL session reuse with TLS session tickets is not supported yet.
    Use SSL session IDs instead.
    
    See https://github.com/curl/curl/issues/1109
---
 lib/vtls/mbedtls.c | 5 +++++
 1 file changed, 5 insertions(+)

diff --git a/lib/vtls/mbedtls.c b/lib/vtls/mbedtls.c
index 8bcaddd25..213a58fca 100644
--- a/lib/vtls/mbedtls.c
+++ b/lib/vtls/mbedtls.c
@@ -373,6 +373,11 @@ mbed_connect_step1(struct connectdata *conn,
   mbedtls_ssl_conf_ciphersuites(&connssl->config,
                                 mbedtls_ssl_list_ciphersuites());
 
+#if defined(MBEDTLS_SSL_SESSION_TICKETS)
+  mbedtls_ssl_conf_session_tickets(&connssl->config,
+                                   MBEDTLS_SSL_SESSION_TICKETS_DISABLED);
+#endif
+
   /* Check if there's a cached ID we can/should use here! */
   if(data->set.general_ssl.sessionid) {
     void *old_session = NULL;

-- 
To stop receiving notification emails like this one, please contact
address@hidden



reply via email to

[Prev in Thread] Current Thread [Next in Thread]