mirror of
https://github.com/Mbed-TLS/mbedtls.git
synced 2024-12-29 18:18:24 +00:00
Document that we do not implement the anti-replay defenses
Signed-off-by: Ronald Cron <ronald.cron@arm.com>
This commit is contained in:
parent
d514d9c798
commit
1987a7c068
@ -5224,6 +5224,11 @@ int mbedtls_ssl_close_notify(mbedtls_ssl_context *ssl);
|
|||||||
* same warnings apply to any use of the
|
* same warnings apply to any use of the
|
||||||
* early_exporter_master_secret.
|
* early_exporter_master_secret.
|
||||||
*
|
*
|
||||||
|
* Mbed TLS does not implement one of the anti-replay defenses
|
||||||
|
* defined in section 8 of the TLS 1.3 specification:
|
||||||
|
* single-ticket use or ClientHello recording within a given
|
||||||
|
* time window.
|
||||||
|
*
|
||||||
* \note This function is used in conjunction with
|
* \note This function is used in conjunction with
|
||||||
* mbedtls_ssl_handshake(), mbedtls_ssl_handshake_step(),
|
* mbedtls_ssl_handshake(), mbedtls_ssl_handshake_step(),
|
||||||
* mbedtls_ssl_read() and mbedtls_ssl_write() to read early
|
* mbedtls_ssl_read() and mbedtls_ssl_write() to read early
|
||||||
|
Loading…
Reference in New Issue
Block a user