[Oisf-users] Does suricata have a facility for detecting non-SSL traffic on port 443?

Cooper F. Nelson cnelson at ucsd.edu
Wed Aug 21 16:28:09 UTC 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

See subject.  I know the TLS decoder can check for issues with certs and
the SSL handshake, but I just want to know if a flow is *not* ssl at all.

- -- 
Cooper Nelson
Network Security Analyst
UCSD ACT Security Team
cnelson at ucsd.edu x41042
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.17 (MingW32)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/

iQEcBAEBAgAGBQJSFOqZAAoJEKIFRYQsa8FWi1wIAJB9YyhI/PfqDdUUBi8GnGl2
ySOzMj1/KSv3tV98CHS0AJq3p9kkJiiimoFh+7Zn/kAVjFbZv0bf97jok/roj+lg
Cs09FksaMIdlsfStwc9U0gZCNpFJsbX6L9oKrcFcyhGqav/+fz27CEBYYmv8S4+j
dEv45RnHHA44aP4Pk8UfaMvOG3KKjxjGBKhlzS+47K7IjNEmsWbw1ZQCK44m2M+e
QglhaCWt7CA6QXo9sk9NzsE3+x9XN9jbKe1o6JEX/xRBzK3HWw+aVGHkfyT+31Ry
efkaqTIAFObDUZazqdRhtGP2skJxVTvcEZ0JuAknrV3LKLH1yocoLQAlN2kCwZE=
=NnF8
-----END PGP SIGNATURE-----



More information about the Oisf-users mailing list