ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: Re: [Wireshark-users] Q: SSL error - ssl_decrypt_pre_master_secret wrong pre_mas

From: Adam Bradley <adam_j_bradley@xxxxxxxxx>
Date: Mon, 21 Apr 2008 21:00:44 +1000
Should have read http://en.wikipedia.org/wiki/Secure_Sockets_Layer first.

Adam

Adam Bradley wrote:
Hi all. I'm currently receiving the following when I'm following an SSL session
which is using Client Certificate's for authentication, yes I have imported the
private key :)

Any ideas - thanks in advance!
Adam


---snip---
dissect_ssl enter frame #7 (first time)
  conversation = 05FC1870, ssl_session = 05FC1A48
dissect_ssl3_record: content_type 22
decrypt_ssl3_record: app_data len 134 ssl, state 0x17
association_find: TCP port 3957 found 00000000
packet_from_server: is from server - FALSE
decrypt_ssl3_record: using client decoder
decrypt_ssl3_record: no decoder available
dissect_ssl3_handshake iteration 1 type 16 offset 5 length 130 bytes, remaining
139
dissect_ssl3_handshake found SSL_HND_CLIENT_KEY_EXCHG state 0x17
pre master encrypted[128]:
---snip---
---snip---
ssl_decrypt_pre_master_secret:RSA_private_decrypt
pcry_private_decrypt: stripping 7 bytes, decr_len zd
decrypted_unstrip_pre_master[128]:
---snip---
---snip---
ssl_decrypt_pre_master_secret wrong pre_master_secret length (121, expected 48)
dissect_ssl3_handshake can't decrypt pre master secret
dissect_ssl3_record: content_type 20
dissect_ssl3_change_cipher_spec
association_find: TCP port 3957 found 00000000
packet_from_server: is from server - FALSE
ssl_change_cipher CLIENT
dissect_ssl3_record: content_type 22
decrypt_ssl3_record: app_data len 32 ssl, state 0x17
association_find: TCP port 3957 found 00000000
packet_from_server: is from server - FALSE
decrypt_ssl3_record: using client decoder
decrypt_ssl3_record: no decoder available
dissect_ssl3_handshake iteration 1 type 29 offset 150 length 16754481 bytes,
remaining 182
---snip---

_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users