disable session id reuse
"Mody, Darshan (Darshan)" <darshanmody-gc/[email protected]> Thu, 3 May 2018 08:42:50 +0000
| Newsgroups | gmane.comp.encryption.openssl.user,gmane.comp.encryption.openssl.devel |
|---|---|
| Message-ID | <25D2EC755404B4409F263AC6D050FEBB2A41FE1B@AZ-FFEXMB03.global.avaya.com> |
--===============1472692737448262848==
Content-Language: en-US
Content-Type: multipart/alternative;
boundary="_000_25D2EC755404B4409F263AC6D050FEBB2A41FE1BAZFFEXMB03globa_"
--_000_25D2EC755404B4409F263AC6D050FEBB2A41FE1BAZFFEXMB03globa_
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Hi,
While doing a openssl s_time command I find that by default it tries for Se=
ssion Id Reuse. "Now timing with session id reuse."
In case if we don't want openssl to reuse session id's how can we configure=
openssl in the application for the same.
The application here is acting as a server.
I have set SSL_CTX_set_session_cache_mode to SSL_SESS_CACHE_OFF
Thanks
Darshan
--_000_25D2EC755404B4409F263AC6D050FEBB2A41FE1BAZFFEXMB03globa_
Content-Type: text/html; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
<html xmlns:v=3D"urn:schemas-microsoft-com:vml" xmlns:o=3D"urn:schemas-micr=
osoft-com:office:office" xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" xmlns=3D"http:=
//www.w3.org/TR/REC-html40">
<head>
<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dus-ascii"=
>
<meta name=3D"Generator" content=3D"Microsoft Word 14 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0in;
margin-bottom:.0001pt;
font-size:11.0pt;
font-family:"Calibri","sans-serif";}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:blue;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:purple;
text-decoration:underline;}
span.EmailStyle17
{mso-style-type:personal-compose;
font-family:"Calibri","sans-serif";
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-family:"Calibri","sans-serif";}
@page WordSection1
{size:8.5in 11.0in;
margin:1.0in 1.0in 1.0in 1.0in;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang=3D"EN-US" link=3D"blue" vlink=3D"purple">
<div class=3D"WordSection1">
<p class=3D"MsoNormal">Hi,<o:p></o:p></p>
<p class=3D"MsoNormal"><o:p> </o:p></p>
<p class=3D"MsoNormal">While doing a openssl s_time command I find that by =
default it tries for Session Id Reuse. “Now timing with session id re=
use.”<o:p></o:p></p>
<p class=3D"MsoNormal"><o:p> </o:p></p>
<p class=3D"MsoNormal">In case if we don’t want openssl to reuse sess=
ion id’s how can we configure openssl in the application for the same=
.
<o:p></o:p></p>
<p class=3D"MsoNormal"><o:p> </o:p></p>
<p class=3D"MsoNormal">The application here is acting as a server.<o:p></o:=
p></p>
<p class=3D"MsoNormal"><o:p> </o:p></p>
<p class=3D"MsoNormal">I have set SSL_CTX_set_session_cache_mode to S=
SL_SESS_CACHE_OFF<o:p></o:p></p>
<p class=3D"MsoNormal"><o:p> </o:p></p>
<p class=3D"MsoNormal">Thanks<o:p></o:p></p>
<p class=3D"MsoNormal">Darshan<o:p></o:p></p>
</div>
</body>
</html>
--_000_25D2EC755404B4409F263AC6D050FEBB2A41FE1BAZFFEXMB03globa_--
--===============1472692737448262848==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
--
openssl-users mailing list
To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users
--===============1472692737448262848==--