Wrong error code with unknown key share from server

NEW
Unassigned

Status

P3
normal
2 years ago
5 months ago

People

(Reporter: ekr, Unassigned)

Tracking

trunk

Firefox Tracking Flags

(Not tracked)

Details

(Reporter)

Description

2 years ago
If the server returns a key share in a totally unknown group, the client sends back a missing_extension error. This is because we ignore key shares for disabled groups in:

http://searchfox.org/nss/source/lib/ssl/ssl3ext.c#3116

And then when we look at the server's list it's empty.
Priority: -- → P3
You need to log in before you can comment on or make changes to this bug.