Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-8326643

JDK server does not send a dummy change_cipher_spec record after HelloRetryRequest message

XMLWordPrintable

    • b16
    • Verified

        JDK server does not send a dummy change_cipher_spec record after HelloRetryRequest message.

        According to RFC 8446 (Transport Layer Security (TLS) Protocol Version 1.3) Appendix D.4 (Middlebox Compatibility Mode), if the client sends a non-empty session ID in the ClientHello message, the server sends a dummy change_cipher_spec (CCS) record immediately after its first handshake message. This may either be after a ServerHello or a HelloRetryRequest.
        https://datatracker.ietf.org/doc/html/rfc8446#appendix-D.4

              pkoppula Prasadarao Koppula
              shadowbug Shadow Bug
              Votes:
              0 Vote for this issue
              Watchers:
              12 Start watching this issue

                Created:
                Updated:
                Resolved: