Tweak the comment regarding record version check with respect to TLSv1.3
Reviewed-by: Tim Hudson <tjh@openssl.org> Reviewed-by: Ben Kaduk <kaduk@mit.edu> (Merged from https://github.com/openssl/openssl/pull/4527)
This commit is contained in:
parent
61278ff3f9
commit
beb30941d6
1 changed files with 4 additions and 3 deletions
|
@ -272,9 +272,10 @@ int ssl3_get_record(SSL *s)
|
|||
thisrr->rec_version = version;
|
||||
|
||||
/*
|
||||
* Lets check version. In TLSv1.3 we ignore this field. For an
|
||||
* HRR we haven't actually selected TLSv1.3 yet, but we still
|
||||
* treat it as TLSv1.3, so we must check for that explicitly
|
||||
* Lets check version. In TLSv1.3 we ignore this field. For the
|
||||
* ServerHello after an HRR we haven't actually selected TLSv1.3
|
||||
* yet, but we still treat it as TLSv1.3, so we must check for
|
||||
* that explicitly
|
||||
*/
|
||||
if (!s->first_packet && !SSL_IS_TLS13(s)
|
||||
&& !s->hello_retry_request
|
||||
|
|
Loading…
Reference in a new issue