Follow-up from "Session ticket key rotation with TOTP"
The following discussion from !695 (merged) should be addressed:
-
@nmav started a discussion: (+2 comments) The additions of key and totp increase the size of the state quite a lot. Are there any variables here we can eliminate? Also are there disadvantages if we calculate
session_ticket_key
andprevious_ticket_key
from theinitial_stek
instead of storing them?