Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-4885061

JSSE does not renegotate after hitting 2^64-1 sequenced packets.

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Duplicate
    • Icon: P3 P3
    • 7
    • 5.0
    • security-libs
    • None


      According to Eric Rescorla (TLS 1.1 spec lead), SSL/TLS implementations
      must renegotiate before reaching 2^64-1 packets. We currently roll
      over to 0.

      Yes, this is for *REALLY* long lived processes, but Jessie's Fast TCP got me
      thinking about it. Eric will be adding a clarification to the TLS 1.1
      spec.

      ###@###.### 2003-06-27

            xuelei Xuelei Fan
            wetmore Bradford Wetmore
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

              Created:
              Updated:
              Resolved:
              Imported:
              Indexed: