Re: Evading Client-Certificate Authentication

From: Skip Carter (skip_at_taygeta.com)
Date: 04/01/04

  • Next message: Imre Kertesz: "Re: Evading Client-Certificate Authentication"
    To: "Kevin Vanhaelen" <blowfish448@hotmail.com>
    Date: Wed, 31 Mar 2004 15:23:02 -0800
    
    
    

    > whilst in the middle of a Penetration Test I stumbled on a web server only
    > serving SSL and demanding the client to present
    > a certificate to identify himself.
    ...

    > Does anyone have an idea to further assess this server? Am I looking at a
    > mission impossible here maybe?

       Its likely that the server not only expects a certificate from the
    client, but that it be signed by a PARTICULAR CA (maybe a local/private one).
    You might need to figure out a way to get such a certificate (via social
    engineering perhaps ?).

    Skip

    -- 
     Dr. Everett (Skip) Carter      Phone: 831-641-0645 FAX:  831-641-0647
     Taygeta Scientific Inc.        INTERNET: skip@taygeta.com
     1340 Munras Ave., Suite 314    WWW: http://www.taygeta.com
     Monterey, CA. 93940            
    
    



  • Next message: Imre Kertesz: "Re: Evading Client-Certificate Authentication"

    Relevant Pages

    • Re: Cannot request computer certificate.
      ... >problem since you can not request a certificate while logged onto the CA. ... Verify that you can ping it by name and IP address from the client ... >> Kerberos, or dns. ... >> List of NetBt transports currently bound to the Redir ...
      (microsoft.public.windows.server.security)
    • Re: The message must contain a wsa:To header
      ... My client app is not generating a trace file. ... the client is not applying the WSE policy at all because of an ... at ApplicationMessagingWS.Dispatch(String messageType, String ... look for a certificate with this subject name in the certificate store ...
      (microsoft.public.dotnet.framework.webservices.enhancements)
    • Re: L2TP/IPSec from XP client to Windows 2003 Server
      ... ie no valid cert found on client - contacted Microsoft ... Windows Server 2003 Certificate Authority running ... The next step is to install Certificate Services on the Windows Server ... From Networks Connections on the client, ...
      (microsoft.public.security)
    • Re: Cannot request computer certificate.
      ... I would verify that the certificate services service is running and set to ... Verify that you can ping it by name and IP address from the client ... > Kerberos, or dns. ... > List of NetBt transports currently bound to the Redir ...
      (microsoft.public.windows.server.security)
    • SNA 3270 to IP TN3270 Conversion =?ISO-8859-1?Q?=96?= Data Stream Encryption
      ... asked them on their thoughts regarding data stream encryption, ... which means that all data is encrypted before it is sent to the client. ... certificate and the keys from three different places: ... SSL client authentication provides additional authentication and access ...
      (bit.listserv.ibm-main)