tls-attacker / TLS-Scanner

The TLS-Scanner Module from TLS-Attacker
Other
264 stars 39 forks source link

Scanning bugs #16

Closed jurajsomorovsky closed 6 years ago

jurajsomorovsky commented 6 years ago

Checked with schokokeks.org

/cc @hannob

ic0ns commented 6 years ago

The Heartbleed test currently assumes that atleast one rsa ciphersuite is supported. With TLS-Attacker it is possible to reconfigure this - with the scanner not so easily. I'll fix this problem with the next TLS-Attacker release.

For the Bleichenbacher check there was a missing check if we are scanning for configuration problems or implementation problems. Therefore the Scanner reported Unknown and not false.

The problems (all but the heartbleed one) are fixed in the v2.1 Branch. They will probably be merged into master by the end of the week. Thanks for reporting! Let me know if you experience further problems.

ic0ns commented 6 years ago

I fixed the mentioned problems. They are all solved with the release of TLS-Scanner 2.2