BLOG     |     FORUM

Forum Login

Login is optional - if you want to be notified about responses via email. You can also simply ask a question without logging in.



Just ask your question

No signup required

There is no need to sign up or register to ask a question in the forums.

Just ask your question.

You need to signup if you wish to be notified of answers to your question by email.

Other links

Other ways to reach us

Follow us on Twitter

Follow on twitter

Send us an email

mail us

Welcome, Guest
Please Login or Register.    Lost Password?

Finished Decryption problem
(1 viewing) (1) Guest
All your questions answered real quick by Unleash Networks Engineers.
Go to bottom
Post Reply
Post New Topic
Page: 1
TOPIC: Finished Decryption problem
#98
Finished Decryption problem 5 Years ago Karma: 0
In normal case the finished packet from either the client or server gets decrypted. Whereas the decryption problem occurs in case of HELLO_REQUEST scenario from the server. During the hello request the finished packet from both the server and client is decrypted by a wrong key. I had found this by verifying that the Finished Handshake ID of 0x14 not present in the finished message after decrypting.
Enter code here   
Please note: although no board code and smiley buttons are shown, they are still usable.
Reply Quote
 
#99
Re:Finished Decryption problem 5 Years ago  
Hi,

A server hello means the server wants the client to begin the cipher spec negotiation process all over again.

Does the client respond to the Server Hello with a Client Hello ? Does the renego complete successfully ?

Let me check if there are any known problems with this scenario.

Regards,
Vivek Rajan
Enter code here   
Please note: although no board code and smiley buttons are shown, they are still usable.
netscript

Reply Quote
 
#100
Re:Finished Decryption problem 5 Years ago Karma: 0
Yes, the client and server had completed the re-negotiation process successfully. So both had accept their new security parameters,but the unsniff tool doesnt decrypt the SSL traffic after receiving HELLO_REQUEST from the server.
Enter code here   
Please note: although no board code and smiley buttons are shown, they are still usable.
Reply Quote
 
Go to top
Post Reply
Post New Topic
Page: 1