Hi Team,Iam using nss-3.68.4-with-nspr-4.32 in my server. Client is trying to connect to the server using STARTTLS, but after "Client Hello" message is sent, the server sending "Unsupported Extension" to the client and the connection getting closed.
Could anyone help me to figure out which extension did the server not supported?
Below is the client hello message with extensions obtained from tcpdump:Transport Layer SecurityTLSv1.2 Record Layer: Handshake Protocol: Client HelloContent Type: Handshake (22)Version: TLS 1.0 (0x0301)Length: 751Handshake Protocol: Client HelloHandshake Type: Client Hello (1)Length: 747Version: TLS 1.2 (0x0303)Random: <Random>Session ID Length: 32Session ID: <Session id>Cipher Suites Length: 62Cipher Suites (31 suites)Compression Methods Length: 1Compression Methods (1 method)Extensions Length: 612Extension: ec_point_formats (len=4)Extension: supported_groups (len=12)Extension: encrypt_then_mac (len=0)Extension: extended_master_secret (len=0)Extension: signature_algorithms (len=48)Extension: supported_versions (len=9)Extension: psk_key_exchange_modes (len=2)Extension: key_share (len=38)Extension: certificate_authorities (len=463)
Any help to resolve this problem will be really helpful.
Best Regards,Hanumesh
--
You received this message because you are subscribed to the Google Groups "dev-tec...@mozilla.org" group.
To unsubscribe from this group and stop receiving emails from it, send an email to dev-tech-cryp...@mozilla.org.
To view this discussion on the web visit https://groups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAMiJu-nkJqwp3fwY9JXPYZSLeu%3DuLU15WYbNxK3OG5ZjTxps9A%40mail.gmail.com.
To view this discussion on the web visit https://groups.google.com/a/mozilla.org/d/msgid/dev-tech-crypto/CAMiJu-kF1TVDbY8wXeAW6cUubcFtaYppRCdck2-nRMArrK4Rgw%40mail.gmail.com.