If it is a new session don't send the old TLS ticket: send a zero length

ticket to request a new session.
This commit is contained in:
Dr. Stephen Henson 2009-11-08 14:36:12 +00:00
parent 4398222457
commit 7ba3838a4b

View File

@ -365,7 +365,7 @@ unsigned char *ssl_add_clienthello_tlsext(SSL *s, unsigned char *p, unsigned cha
if (!(SSL_get_options(s) & SSL_OP_NO_TICKET))
{
int ticklen;
if (s->session && s->session->tlsext_tick)
if (!s->new_session && s->session && s->session->tlsext_tick)
ticklen = s->session->tlsext_ticklen;
else if (s->session && s->tlsext_session_ticket &&
s->tlsext_session_ticket->data)