Commit 1f04f23e authored by Matt Caswell's avatar Matt Caswell
Browse files

Expand comment in tls_process_hello_req()



Following review feedback.

Reviewed-by: default avatarRich Salz <rsalz@openssl.org>
(Merged from https://github.com/openssl/openssl/pull/2259)
parent 1b8bacff
Loading
Loading
Loading
Loading
+5 −4
Original line number Diff line number Diff line
@@ -3226,10 +3226,11 @@ MSG_PROCESS_RETURN tls_process_hello_req(SSL *s, PACKET *pkt)
    }

    /*
     * This is a historical discrepancy maintained for compatibility
     * reasons. If a TLS client receives a HelloRequest it will attempt
     * an abbreviated handshake. However if a DTLS client receives a
     * HelloRequest it will do a full handshake.
     * This is a historical discrepancy (not in the RFC) maintained for
     * compatibility reasons. If a TLS client receives a HelloRequest it will
     * attempt an abbreviated handshake. However if a DTLS client receives a
     * HelloRequest it will do a full handshake. Either behaviour is reasonable
     * but doing one for TLS and another for DTLS is odd.
     */
    if (SSL_IS_DTLS(s))
        SSL_renegotiate(s);