disable session resumption when ticket expired
Signed-off-by: Jerry Yu <jerry.h.yu@arm.com>
diff --git a/library/ssl_tls13_client.c b/library/ssl_tls13_client.c
index ee4c24d..6227f3d 100644
--- a/library/ssl_tls13_client.c
+++ b/library/ssl_tls13_client.c
@@ -681,7 +681,8 @@
static int ssl_tls13_has_configured_ticket( mbedtls_ssl_context *ssl )
{
mbedtls_ssl_session *session = ssl->session_negotiate;
- return( session != NULL && session->ticket != NULL );
+ return( ssl->handshake->resume &&
+ session != NULL && session->ticket != NULL );
}
MBEDTLS_CHECK_RETURN_CRITICAL