IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Application data during key re-exchange



Markus Friedl <markus%openbsd.org@localhost> writes:

> On Tue, Mar 12, 2002 at 08:56:46AM -0700, Joseph Galbraith wrote:
> > Our interpretation is between KEXINIT and NEWKEYS
> > nothing is allowed.  So after sending a KEXINIT
> > packet, an implementation (client or server)
> > must not send any non-key-exchange packets
> > other than DEBUG, DISCONNECT, and IGNORE until
> > it has sent a NEWKEYS packet.
> 
> Yes, this is what OpenSSH does (or tries).

Ok, I guess I just have to do the same then.

/Niels



Home | Main Index | Thread Index | Old Index