RE: Any tool for testing SSL servers (by modifying client HELLO)?

From: Steven Lundberg (slundberg_at_fnbbemidji.com)
Date: 09/13/05

  • Next message: dave kleiman: "RE: Recommended configuration settings for logging"
    To: <security-basics@securityfocus.com>
    Date: Tue, 13 Sep 2005 12:23:06 -0500
    
    

    I use Foundstone's SSLDigger to test my SSL servers.

    > -----Original Message-----
    > From: dallas jordan [mailto:dallas.jordan@gmail.com]
    > Sent: Monday, September 12, 2005 2:46 PM
    > To: contrera@eig.unige.ch
    > Cc: security-basics@securityfocus.com
    > Subject: Re: Any tool for testing SSL servers (by modifying
    > client HELLO)?
    >
    >
    > I believe you can use OpenSSL from the command line in linux to
    > connect to the server with different encryption strengths set and see
    > if the server will accept any of them.
    >
    > On 12 Sep 2005 14:07:29 -0000, contrera@eig.unige.ch
    > <contrera@eig.unige.ch> wrote:
    > > Hi,
    > >
    > > I'm looking for a tool that will allow me to specify which
    > cipher suites i want to put in my client HELLO.
    > >
    > > I want to test if my SSL servers allows ciphers with "only" 40bits.
    > >
    > > Thanks for the infos
    > >
    >
    >
    > --
    > Dallas Jordan CCNA, CISSP
    >


  • Next message: dave kleiman: "RE: Recommended configuration settings for logging"

    Relevant Pages

    • [REVS] Backdoor Spotcom Analysis
      ... Spotcom is a backdoor client application that allows a hacker to control ... The server IP address is hard-coded in ... msrsvp.exe accepts a couple of command line arguments. ... the packet payload. ...
      (Securiteam)
    • [Full-disclosure] Multiple vulnerabilities in Toribash 2.71
      ... C] client unicode buffer-overflow in the SAY command ... D] server crash through uninitialized values ...
      (Full-Disclosure)
    • Multiple vulnerabilities in Toribash 2.71
      ... C] client unicode buffer-overflow in the SAY command ... D] server crash through uninitialized values ...
      (Bugtraq)
    • [1/3] POHMELFS high performance network filesystem. Documentation.
      ... +POHMELFS: Parallel Optimized Host Message Exchange Layered File System. ... * Fast and scalable multithreaded userspace server. ... * Client is able to switch between different servers (if one goes down, ... +command (or set of commands, which is frequently used during data writing: ...
      (Linux-Kernel)
    • [2/3] POHMELFS: Documentation.
      ... * Client is able to switch between different servers (if one goes down, ... Each transaction contains all information needed to process given command ... are asynchronous and are sent to the server during system writeback. ... +POHEMLFS is capable of full data channel encryption and/or strong crypto hashing. ...
      (Linux-Kernel)