Skip to content

Commit

Permalink
Merge pull request #1354 from bob-beck/main
Browse files Browse the repository at this point in the history
Forbid the sender from sending duplicate supported groups entries.
  • Loading branch information
ekr authored Jul 7, 2024
2 parents 976551d + 762606e commit 7ec60a5
Showing 1 changed file with 3 additions and 1 deletion.
4 changes: 3 additions & 1 deletion draft-ietf-tls-rfc8446bis.md
Original file line number Diff line number Diff line change
Expand Up @@ -2246,7 +2246,9 @@ Finite Field Groups (DHE):
{:br }

Items in "named_group_list" are ordered according to the sender's
preferences (most preferred choice first).
preferences (most preferred choice first). The "named_group_list"
MUST NOT contain any duplicate entries. A recipient MAY abort a connection
with a fatal illegal_parameter alert if it detects a duplicate entry.

As of TLS 1.3, servers are permitted to send the "supported_groups"
extension to the client. Clients MUST NOT act upon any information
Expand Down

0 comments on commit 7ec60a5

Please sign in to comment.