This is a CONNECT tunnel, through which encrypted HTTPS traffic flows.Fiddler's HTTPS Decryption feature is enabled, but this specific tunnel was configured not to be decrypted. Session Flag 'X-No-Decrypt' was set to: 'PeekYieldedUnknownProtocol'.
A SSLv3-compatible ServerHello handshake was found. Fiddler extracted the parameters below.
Version: 3.1 (TLS/1.0)SessionID: E5 67 67 26 0C 9A 79 4A 88 CE CC 9D 4B 0E 8E 0DRandom: 59 14 75 79 EF DE 25 12 14 2F A2 B7 8F 3E C0 82 8C E6 B0 4D F4 06 DA C3 A0 1F 84 18 AF F8 7C 56Cipher: TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHA [0xC014]CompressionSuite: NO_COMPRESSION [0x00]Extensions: ec_point_formats uncompressed [0x0], ansiX962_compressed_prime [0x1], ansiX962_compressed_char2 [0x2] server_name empty renegotiation_info 00
SESSION STATE: Done.Request Entity Size: 80 bytes.Response Entity Size: 790 bytes.
== FLAGS ==================BitFlags: [ResponseGeneratedByFiddler, IsBlindTunnel] 0x1100HTTPS-SERVER-CIPHER: TLS1_CK_ECDHE_RSA_WITH_AES_256_CBC_SHAHTTPS-SERVER-SESSIONID: E5 67 67 26 0C 9A 79 4A 88 CE CC 9D 4B 0E 8E 0DX-CLIENTIP: 10.231.168.224X-CLIENTPORT: 40405X-CONNECT-PEEK: 43-4F-4E-4E-45-43-54-20-75-6E-6B-6E-6F-77-6E-3AX-EGRESSPORT: 59116X-HOSTIP: xxx.xxx.xxx.xxxX-NO-DECRYPT: PeekYieldedUnknownProtocolX-RESPONSEBODYTRANSFERLENGTH: 0
== TIMING INFO ============ClientConnected: 11:30:16.573ClientBeginRequest: 11:30:16.599GotRequestHeaders: 11:30:16.599ClientDoneRequest: 11:30:16.599Determine Gateway: 0msDNS Lookup: 0msTCP/IP Connect: 98msHTTPS Handshake: 0msServerConnected: 11:30:16.698FiddlerBeginRequest: 11:30:16.698ServerGotRequest: 11:30:16.698ServerBeginResponse: 00:00:00.000GotResponseHeaders: 00:00:00.000ServerDoneResponse: 11:30:38.148ClientBeginResponse: 11:30:38.148ClientDoneResponse: 11:30:38.148
Overall Elapsed: 0:00:21.549
The response was buffered before delivery to the client.
== WININET CACHE INFO ============This URL is not present in the WinINET cache. [Code: 2]* Note: Data above shows WinINET's current cache state, not the state at the time of the request.* Note: Data above shows WinINET's Medium Integrity (non-Protected Mode) cache only.
11:46:17:7827 Fiddler Running...11:46:17:7837 Setting upstream gateway to none11:46:17:7837 CertInspector Checking for updates to FiddlerCert Inspector.11:46:17:7837 CertInspector Latest version detected: v1.0.9.011:46:17:8686 Windows 8+ AppContainer isolation feature detected.11:46:19:3436 FiddlerCert Inspector: Current version is 1.0.9.0, latest version is 1.0.9.0.11:46:24:0645 FiddlerCert Inspector: Current version is 1.0.9.0, latest version is 1.0.9.0.11:47:07:5333 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance11:52:02:8318 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance11:52:27:2750 Fiddler ICertificateProvider v1.5.1.1 loaded. fiddler.certmaker.bc.Debug: False ObjectID: 0x3bd503711:59:09:1536 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance12:02:08:4666 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance12:02:15:8668 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance12:07:15:8503 HTTPSLint> Warning: ClientHello record was 508 bytes long. Some servers have problems with ClientHello's greater than 255 bytes. https://github.com/ssllabs/research/wiki/Long-Handshake-Intolerance