Dlts13NewEpoch saves the keys currently derived in the ssl object. Moving Dtls13NewEpoch inside DeriveTls13Keys avoid the risk of using the wrong keys when creating a new Epoch. This fixes at least he following scenario: - Client has encryption epoch != 2 in the handshake (eg. due to rtx) - Client derives traffic0 keys after receiving server Finished message - Client set encryption epoch to 2 again to send the Finished message, this override the traffic key computed - Client creates the new epoch with the wrong key
Before creating any new configure files (.conf) read the CONF_FILES_README.md