Re: Can wrapped master secret be unwrapped only using fields from sslSessionID structure?

2017-02-01 Thread Maxim Rise
On Wednesday, February 1, 2017 at 10:48:52 PM UTC+2, Kyle Hamilton wrote: > https://bugzilla.mozilla.org/show_bug.cgi?id=1183318 is a thing. If > this is related to a communication from Firefox, SSLKEYLOGFILE doesn't work. > > Memory dumps can be created by malware. Packet captures can be

Re: Can wrapped master secret be unwrapped only using fields from sslSessionID structure?

2017-02-01 Thread Maxim Rise
I know about SSLKEYLOGFILE environment path, but I can't use it. I extracted master secret from a memory dump and I need to unwrap it in order to use it to decrypt the wireshark ssl communication. -- dev-tech-crypto mailing list dev-tech-crypto@lists.mozilla.org

Re: Can wrapped master secret be unwrapped only using fields from sslSessionID structure?

2017-02-01 Thread Kyle Hamilton
https://bugzilla.mozilla.org/show_bug.cgi?id=1183318 is a thing. If this is related to a communication from Firefox, SSLKEYLOGFILE doesn't work. Memory dumps can be created by malware. Packet captures can be created by anyone who has access to what should have been (but which have been in