From: Matt Caswell Date: Wed, 2 Nov 2016 09:14:51 +0000 (+0000) Subject: Fail if an unrecognised record type is received X-Git-Tag: OpenSSL_1_1_1-pre1~3281 X-Git-Url: https://git.openssl.org/gitweb/?p=openssl.git;a=commitdiff_plain;h=436a2a0179416d2cc22b678b63e50c2638384d5f;hp=436a2a0179416d2cc22b678b63e50c2638384d5f Fail if an unrecognised record type is received TLS1.0 and TLS1.1 say you SHOULD ignore unrecognised record types, but TLS 1.2 says you MUST send an unexpected message alert. We swap to the TLS 1.2 behaviour for all protocol versions to prevent issues where no progress is being made and the peer continually sends unrecognised record types, using up resources processing them. Issue reported by 郭志攀 Reviewed-by: Tim Hudson ---