Artifact [6a838c9bce]
Bounty program for improvements to Tcl and certain Tcl packages.

Artifact 6a838c9bce7a9717383ec6354267dea132a4d22402ab269df7e60c58f9eed546:

Ticket change [6a838c9bce] - New ticket [581d50e6cdc97b0b|581d50e6cd] <i>Callback wrongly reports SSL3</i>. by anonymous on 2018-04-05 13:49:27.
D 2018-04-05T13:49:27.981
J foundin 1.7.16
J icomment The\s-command\scallback\sreports\shandshake\sby\sSSL3,\swhen\sin\sfact\sTLS1.2\swas\sused.\r\n\r\nAccurate\sinformation\swould\sbe\suseful\s-\scan\sthe\scallback\sreport\sthe\sprotocol\sactually\sused?\r\n\r\n\r\nIn\sthis\sexample,\sTclTLS\swas\sbuilt\swith\s--disable-sslv2\s--disable-sslv3,\slibressl,\r\nand\stls::socket\swas\scalled\swith\s-ssl2\s0\s-ssl3\s0\s-tls1\s1\s-tls1.1\s1\s-tls1.2\s1\r\n\r\nThe\sactual\sprotocol\sversion\sTLS1.2\swas\sverified\sby\swireshark.\r\n\r\ntlsMonitor\sinfo\ssock12678a0\shandshake\sstart\s{before/connect\sinitialization}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{before/connect\sinitialization}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\swrite\sclient\shello\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sread\sserver\shello\sA}\r\ntlsMonitor\sverify\ssock12678a0\s2\s<<snip>>\r\ntlsMonitor\sverify\ssock12678a0\s1\s<<snip>\r\ntlsMonitor\sverify\ssock12678a0\s0\s<<snip>>\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sread\sserver\scertificate\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sread\sserver\skey\sexchange\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sread\sserver\sdone\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\swrite\sclient\skey\sexchange\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\swrite\schange\scipher\sspec\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\swrite\sfinished\sA}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sflush\sdata}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sloop\s{SSLv3\sread\sfinished\sA}\r\ntlsMonitor\sinfo\ssock12678a0\shandshake\sdone\s{SSL\snegotiation\sfinished\ssuccessfully}\r\ntlsMonitor\sinfo\ssock12678a0\sconnect\sexit\s{SSL\snegotiation\sfinished\ssuccessfully}
J login anonymous
J mimetype text/x-fossil-plain
J private_contact a774b1f5653dc3360e29ea7d635a64e94c9f1dab
J severity Important
J status Open
J title Callback\swrongly\sreports\sSSL3
J type Code\sDefect
K 581d50e6cdc97b0bb5f0e5516086ac469e077f04
U anonymous
Z 1e19d8454aeb1b194c797fcfd208a07d