| commit | bfab12bb7dbd32cb13a8d518f312857ebd045541 | [log] [tgz] |
|---|---|---|
| author | Matt Caswell <matt@openssl.org> | Tue Nov 14 13:55:21 2017 +0000 |
| committer | Matt Caswell <matt@openssl.org> | Tue Nov 21 17:46:22 2017 +0000 |
| tree | 2880cf8691dac3ba3d839be90e93e933fd6d27c0 | |
| parent | b510b740fb4e3cb35e6f297c232c0e776dbcbc71 [diff] |
Allow a client to send early_data with SNI if the session has no SNI We can only send early_data if the SNI is consistent. However it is valid for the client to set SNI and the server to not use it. This would still be counted as consistent. OpenSSL client was being overzealous in this check and disallowing this scenario. Reviewed-by: Ben Kaduk <kaduk@mit.edu> (Merged from https://github.com/openssl/openssl/pull/4738)