Commit 108d45df authored by Matt Caswell's avatar Matt Caswell
Browse files

Allow a missing sig algs extension if resuming

The current TLSv1.3 spec says:

'If a server is authenticating via a certificate and the client has not
sent a "signature_algorithms" extension, then the server MUST abort the
handshake with a "missing_extension" alert (see Section 8.2).'

If we are resuming then we are not "authenticating via a certificate" but
we were still aborting with the missing_extension alert if sig algs was

This commit ensures that we only send the alert if we are not resuming.

Reviewed-by: default avatarRich Salz <>
(Merged from
parent 355a0d10
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment