Skip to content
This repository has been archived by the owner on Jun 17, 2024. It is now read-only.

Removing request-context from the encrypted certificate (sent by the server) causes a decode_error on NSS client while it only cause a “bad_certificate” error on miTLS client. #178

Open
oweisse-msft opened this issue Jul 19, 2017 · 0 comments

Comments

@oweisse-msft
Copy link

This may hide a decode bug with further implications, as this should be an illegal message

The experiment removes the request-context part from the Certificate handshake message of the server. This creates an illegal message (see section 8.3.3 Authentication Messages).

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant