[openssl-users] May I ask you about the master-key in openssl s_client command result?
이영주
shinejaekal at naver.com
Thu Sep 27 01:19:19 UTC 2018
Hello. I am a person working in Korea.
I have a question.
I wonder why master-key is revealed in plaintext in the results below.
(used command : Openssl s_client -connect host:port)
------------------------------------------------------------------------------------
(skip)
SSL-Session
Protocol : TLSv1.2
Cipher : ECDHE-RSA-AES128-GCM-SHA256
Session-ID : C3921E69...
Session-ID-ctx:
Master-Key : 6244A1C4B9D48A6C2100198...
(skip)
------------------------------------------------------------------------------------
Does it matter if the master key is exposed in plaintext?
And I wonder what role this master key plays.
Thank you for your detailed answer.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20180927/ce2c51e6/attachment-0001.html>
More information about the openssl-users
mailing list