[Oisf-users] tls1.3 and certificate sniffing

erik clark philosnef at gmail.com
Fri Apr 20 16:23:16 UTC 2018


So, with Bro I've got _some_ certificate visibility into a tls1.3
transaction, but cannot pull the actual certificate. Will the certificate
sniffing signatures of suri still work with tls1.3 as a result? Examples
are the apple fake ssl certificates and fake linkedin certificates in the
ET Pro list.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20180420/87c7672d/attachment.html>


More information about the Oisf-users mailing list