RFC 8446, "The Transport Layer Security (TLS) Protocol Version 1.3", August 2018Source of RFC: tls (sec)
Errata ID: 6143
Publication Format(s) : TEXT
Reported By: Ben Smyth
Date Reported: 2020-04-29
Section 4.2.7 says:
As of TLS 1.3, servers are permitted to send the "supported_groups" extension to the client.
It is unclear whether servers are permitted to send the "supported_groups" extension to
the client without solicitation, i.e., when the client does not first send the extension to the
server. Clarification would be useful.