summaryrefslogtreecommitdiffstats
path: root/CHANGES
diff options
context:
space:
mode:
authorDr. Stephen Henson <steve@openssl.org>2014-04-05 20:43:54 +0100
committerDr. Stephen Henson <steve@openssl.org>2014-04-05 20:43:54 +0100
commitcd6bd5ffda616822b52104fee0c4c7d623fd4f53 (patch)
tree54e34b73c32b977fb3832d5fa0eb99a345e19cd9 /CHANGES
parentf8dd55bb5b1ed9fe7e1a3974329fdb4adbd786de (diff)
Set TLS padding extension value.
Enable TLS padding extension using official value from: http://www.iana.org/assignments/tls-extensiontype-values/tls-extensiontype-values.xhtml
Diffstat (limited to 'CHANGES')
-rw-r--r--CHANGES12
1 files changed, 1 insertions, 11 deletions
diff --git a/CHANGES b/CHANGES
index 404ac85690..be2212db7b 100644
--- a/CHANGES
+++ b/CHANGES
@@ -291,23 +291,13 @@
to be resent. (CVE-2013-6450)
[Steve Henson]
- *) TLS pad extension: draft-agl-tls-padding-02
+ *) TLS pad extension: draft-agl-tls-padding-03
Workaround for the "TLS hang bug" (see FAQ and PR#2771): if the
TLS client Hello record length value would otherwise be > 255 and
less that 512 pad with a dummy extension containing zeroes so it
is at least 512 bytes long.
- To enable it use an unused extension number (for example chrome uses
- 35655) using:
-
- e.g. -DTLSEXT_TYPE_padding=35655
-
- Since the extension is ignored the actual number doesn't matter as long
- as it doesn't clash with any existing extension.
-
- This will be updated when the extension gets an official number.
-
[Adam Langley, Steve Henson]
*) Add functions to allocate and set the fields of an ECDSA_METHOD