]> granicus.if.org Git - openssl/commit
DTLS message_sequence number wrong in rehandshake ServerHello
authorMichael Tuexen <tuexen@fh-muenster.de>
Tue, 13 Aug 2013 17:53:19 +0000 (18:53 +0100)
committerDr. Stephen Henson <steve@openssl.org>
Tue, 13 Aug 2013 17:55:16 +0000 (18:55 +0100)
commit75b81247a0629b86f18ca8ccad64851d242f87ed
tree322828244cc0bc30810e1065790c074478523cab
parent2c1a5c1039253abf6776b389c71dfae4c8ba8875
DTLS message_sequence number wrong in rehandshake ServerHello

This fix ensures that
* A HelloRequest is retransmitted if not responded by a ClientHello
* The HelloRequest "consumes" the sequence number 0. The subsequent
ServerHello uses the sequence number 1.
* The client also expects the sequence number of the ServerHello to
be 1 if a HelloRequest was received earlier.
This patch fixes the RFC violation.
(cherry picked from commit b62f4daac00303280361924b9cc19b3e27528b15)
ssl/d1_pkt.c
ssl/d1_srvr.c