/plushcap/analysis/cloudflare/microsoft-tls-downgrade-schannel-bug

Change the (S)Channel! Deconstructing the Microsoft TLS Session Resumption bug

What's this blog post about?

Microsoft products Internet Explorer and Edge were having trouble maintaining HTTPS sessions with a customer's website due to issues with the handling of TLS session tickets by the SChannel security package, which provides TLS functionality for many Microsoft applications. The problem was fixed after Cloudflare reported it to Microsoft, who then released software updates for affected platforms.

Company
Cloudflare

Date published
Feb. 11, 2016

Author(s)
Patrick R. Donahue

Word count
2493

Hacker News points
None found.

Language
English


By Matt Makai. 2021-2024.