Design and verification of the TLS 1.3 handshake state machine in LibreSSL by Theo Buehler @BsdcanOrg
Design and verification of the TLS 1.3 handshake state machine in LibreSSL by Theo Buehler  @BsdcanOrg
Uploaded June 2019 | Updated September 2026, 24 seconds ago
The TLS 1.3 handshake is the protocol used for negotiating a TLS 1.3 connection between a client and a server. During the handshake the configuration for the session is agreed upon, ephemeral secrets are exchanged and the server is authenticated. This protocol is encoded in a state machine.

After a general discussion of TLS and in particular a comparison of TLS 1.2 and TLS 1.3, this talk will review the TLS 1.3 handshake state machine and discuss its implementation in LibreSSL. Benefits and drawbacks of both the handshake protocol and LibreSSL's implementation will be discussed. We will also elaborate on the way we verify and guarantee our implementation's correctness using regression testing and other methods.


More Info:
bsdcan.org/2019/schedule/events/1088.en.html
Design and verification of the TLS 1.3 handshake state machine in LibreSSL by Theo BuehlerFreeBSD and Windows Environments By:  Michael DexterPorting FreeBSD to Firecracker by:Colin PercivalBuilding an accessible OpenBSD laptopSupporting FreeBSD in the Field By: Allan JudeMaking Pi ServerReady: time for cheap Arm infrastructure be standards-compliant: Andrei WarkentinDiving and #OpenBSD puffy au naturel by Kristaps DzonsonsHow ZFS snapshots really work And why they perform well (usually) by Matt AhrensSandbox Your Program Using FreeBSDs Capsicum By Jake FreelandHardware-accelerated program tracing on FreeBSD By Bojan NovkovićData Science on FreeeBSDARM64 Maciej CzekajKeynote: Hardware Support for Memory Hungry Applications By Margo Seltzer
BSDCan |

Design and verification of the TLS 1.3 handshake state machine in LibreSSL by Theo Buehler

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER