Skip to content

RFE: RFC8773 PSK + Certificate auth

Description of the feature:

https://www.rfc-editor.org/rfc/rfc8773.html

For quantum resistance we want to be able to mix a PSK into the Master Secret derivation in addition to the normal certificate authentication and DH key exchange.

Applications that this feature may be relevant to:

openconnect/ocserv#411

Is this feature implemented in other libraries (and which)

Not afaict.