On September 28, 2004 03:15 pm, Shen, Lei wrote: > Anyone knows how I can know how many negotiations is actually going on > by just sniff the raw tcp ip data? > > Is there any sniff package can "roughly" understand the ssl protocol. > I do not need to decode the actual message, I just want to know stuff > at the protocol level, like when a negotiation happened, when an error > happened due to one party is not working as protocol defined.
Ethereal can categorise SSL/TLS packets at the record-layer if that's good enough. If you're wanting to get down into the protocol more deeply, try Eric's 'ssldump' tool. Cheers, Geoff -- Geoff Thorpe [EMAIL PROTECTED] http://www.geoffthorpe.net/ ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]