Jan Schaumann · @jschauma
921 followers · 259 posts · Server mstdn.social

Google landed randomized extensions in 110 to help stave off protocol ossification.

groups.google.com/a/chromium.o

Mozilla will follow:
hg.mozilla.org/projects/nss/re

Here's what this looks like in Chrome - note that this implies different TLS fingerprints (see ):

#ja3 #Chrome #ClientHello #tls

Last updated 3 years ago

Julien M. · @julm
485 followers · 4935 posts · Server framapiaf.org


> Major changes between 1.1.1j and 1.1.1k [25 Mar 2021]
> - Fixed a problem with verifying a certificate chain when using the flag (-2021-3450)
> - Fixed an issue where an server may if sent a maliciously crafted renegotiation message from a client (-2021-3449)
openssl.org/news/openssl-1.1.1

#ClientHello #crash #tls #cve #X509_V_FLAG_X509_STRICT #openssl #cybersecurity

Last updated 5 years ago