Skip to content
Discussion options

You must be logged in to vote

这些域名的证书消息太短了,用 WireShark 看,服务端发的第二个 Application Data 长度至少要 3500 才行

本质上还是因为 ML-DSA 的签名太长了,但 TLS 现在没有抗量子证书,长度普遍不够,或者就等明年 FN-DSA 出来

Replies: 1 comment 7 replies

Comment options

You must be logged in to vote
7 replies
@RPRX
Comment options

RPRX Jul 25, 2025
Maintainer

@jjlizz
Comment options

@RPRX
Comment options

RPRX Jul 29, 2025
Maintainer

@MoRanYue
Comment options

@uestcNaldo
Comment options

Answer selected by RPRX
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants