Skip to content

daemon: client-side & server-side tls session resumption with session tickets

Grigorii Demidov requested to merge tls-client-resumption into master

server-side session resumption support is turned off by default

server-side configuration - net.tls_sticket_salt_string(salt_string)

salt_string - salt string used for session ticket key regeneration

Key regeneration algorithm guarantees that all forked kresd instances will use the same session ticket keys.

session ticket key is regenerated every hour.

Edited by Grigorii Demidov

Merge request reports