[openssl-users] May I ask you about the master-key in openssl s_client command result?

이영주 shinejaekal at naver.com
Thu Sep 27 01:19:19 UTC 2018


Hello. I am a person working in Korea.
 
I have a question.
 
I wonder why master-key is revealed in plaintext in the results below.
(used command : Openssl s_client -connect host:port)
 
------------------------------------------------------------------------------------
(skip)
SSL-Session
        Protocol : TLSv1.2
        Cipher : ECDHE-RSA-AES128-GCM-SHA256
        Session-ID : C3921E69...
        Session-ID-ctx:
        Master-Key : 6244A1C4B9D48A6C2100198...
(skip)
------------------------------------------------------------------------------------
 
Does it matter if the master key is exposed in plaintext?
 
And I wonder what role this master key plays.
 
Thank you for your detailed answer.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mta.openssl.org/pipermail/openssl-users/attachments/20180927/ce2c51e6/attachment-0001.html>


More information about the openssl-users mailing list