From e085ea95efb51208fcd163550fd3e21f78e3553f Mon Sep 17 00:00:00 2001 From: Daniel Stenberg Date: Mon, 30 Apr 2018 00:42:34 +0200 Subject: TODO: Support the clienthello extension Closes #2299 --- docs/TODO | 11 +++++++++++ 1 file changed, 11 insertions(+) (limited to 'docs/TODO') diff --git a/docs/TODO b/docs/TODO index 4a3a9b7d9..cd0d6f2b6 100644 --- a/docs/TODO +++ b/docs/TODO @@ -115,6 +115,7 @@ 13.11 Support intermediate & root pinning for PINNEDPUBLICKEY 13.12 Support HSTS 13.13 Support HPKP + 13.14 Support the clienthello extension 14. GnuTLS 14.1 SSL engine stuff @@ -807,6 +808,16 @@ that doesn't exist on the server, just like --ftp-create-dirs. Doc: https://developer.mozilla.org/de/docs/Web/Security/Public_Key_Pinning RFC: https://tools.ietf.org/html/draft-ietf-websec-key-pinning-21 +13.14 Support the clienthello extension + + Certain stupid networks and middle boxes have a problem with SSL handshake + pakets that are within a certain size range because how that sets some bits + that previously (in older TLS version) were not set. The clienthello + extension adds padding to avoid that size range. + + https://tools.ietf.org/html/rfc7685 + https://github.com/curl/curl/issues/2299 + 14. GnuTLS 14.1 SSL engine stuff -- cgit v1.2.3