From a packet capture I took, the client sends a CH with the MP Join extension to which the server directly sends AppData records. Making this look more like a TLS Handshake would require sending a SH along with other obliged accompagnying TLS messages. None of that is currently taken into account in tcpls_accept().