How to turn off only encryption in CipherSuite?

From: Alex Ng (anonymous_at_discussions.microsoft.com)
Date: 08/03/04


Date: Tue, 3 Aug 2004 14:09:08 -0700

According on Microsoft Knowledge Base Article 245030, the
SCHANNEL\Ciphers\NULL subkey, when set to 0x00000000, will
turn off encryption.

On my Windows 2000 Server and IIS (which comes with Win2K
Server), I changed the registry SCHANNEL\Ciphers\NULL
subkey to 0x00000000, and used IE6.0 to HTTPS to browse a
a webpage on that Win2K Server IIS. When I see the log on
Ethereal, I observed that the communication is going
through TCP port 443 (HTTPS), and TLS negotiation was
happening. However, the TLS security negotiation resultant
is TLS_RSA_WITH_RC4_128_MD5, instead of TLS_RSA_NULL_MD5,
contrary to what I expected.

It is also observed an encrypted TLS application data on
Ethereal log.

Would anyone please give some advise how to generate a non-
encrypted scenario?

Thanks a lot.



Relevant Pages

  • Re: TLS vs S/MIME (was: Skype threat) [Telecom]
    ... encrypt the traffic between Eudora and my mail server. ... secure or desirable than S/MIME? ... I'd forgotten about TLS. ... S/MIME can provide signature/envelope verification but also provides encryption. ...
    (comp.dcom.telecom)
  • Re: POP3 encryption in W2K3 - ? possible
    ... > generate certificates for the server's web site and TLS for the virtual ... > docs and manager only describe encryption for the logon process (SPA with ... > server fails, as expected. ... POP3 over SSL is supported by Exchange but not Windows POP3 server. ...
    (microsoft.public.inetserver.iis.smtp_nntp)
  • Re: TLS vs S/MIME (was: Skype threat) [Telecom]
    ... The advantage of S/MIME or PGP is that they are End-To-End encryption ... TLS, OTOH, is only secure up to the server, and the emails ... encryption between my client and server is the best I can get anyway. ...
    (comp.dcom.telecom)
  • If TLS fails, then route to other host
    ... Internal mail server routes outbound mail to gateway Sendmail server. ... Sendmail tries TLS for this mail. ... route this mail to another server which does user-to-user encryption ... does a different type of encryption. ...
    (comp.mail.sendmail)
  • SMTP - Inbound TLS
    ... encryption with one of our clients. ... server for the Outbound TLS. ... check the TLS on the virtual server or add another virtual server I will not ...
    (microsoft.public.exchange2000.general)

Quantcast