Add setting for requiring use of EMS in TLS 1.2
Description of the feature:
The FIPS 140-3 I.G. will require use of EMS KDF for TLS 1.2 after 16th of May 2023.
GnuTLS should have a way to requiring use of EMS for connections that have negotiated TLS 1.2.
Applications that this feature may be relevant to:
All applications using TLS in FIPS mode.
Is this feature implemented in other libraries (and which)
requireExtendedMasterSecret
is a setting in tlslite-ng, not aware of others