Quantcast
Channel: FileZilla Forums
Viewing all articles
Browse latest Browse all 11475

Re: TLS and renegotiation

$
0
0
Quote:
The computational requirements for renegotiating a connection are asymmetrical between the client and the server, with the server performing several times more work. Since the remote host does not appear to limit the number of renegotiations for a single TLS / SSL connection, this permits a client to open several simultaneous connections and repeatedly renegotiate them, possibly leading to a denial of service condition.




Can't the client simply establish another connection with the same result?

Viewing all articles
Browse latest Browse all 11475

Trending Articles