Shared flowchart

Software · L4 · TLS 1.3 handshake

Flowchart of the TLS 1.3 1-RTT handshake from ClientHello to encrypted application data.

by @openstemUpdated Software
Client: ClientHello + ECDHE key_shareServer: ServerHello + key_shareServer: derives shared secret via DHServer: EncryptedExtensionsServer: CertificateServer: CertificateVerify (signs transcript)Server: Finished (HMAC over transcript)Client: validates cert chain to trust storeClient: FinishedBoth: derive traffic keys via HKDFApplication data — encrypted

We use privacy-friendly product analytics (no session recording, PII masked) to improve OpenStem. Load analytics? Privacy Policy