-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Kurt Roeckx wrote:
> On Sat, Dec 16, 2006 at 08:03:43PM +0100, Goetz Babin-Ebell wrote:
>> -----BEGIN PGP SIGNED MESSAGE-----
>> via RT wrote:
>>> [EMAIL PROTECTED] ~]$ openssl s_client -connect mail.buuuuuu.ch:25
>>> -starttls smtp -debug
>> [...]
>>
>> I have a patch for s_client which allows arbitrary (textual) handshake
>> before the TLS handshake starts...
> 
> The SMTP protocol requies you to send the EHLO command before you 
> send STARTTLS.

I'm aware of that.
My patch was originally to do some tests on an IMAP server.
But it is an generalized approach allowing you to do any textual
handshake before you setup TLS.

> See http://www.mail-archive.com/openssl-dev@openssl.org/msg20600.html
> for a patch that adds an -ehlo option.
> 
> (It also has some discussion of you about a more generalized way of
> doing it.)

Oups...
Yes it has.
Time flies like an arrow...
My idea from last year still is good,
but my patch is a first step do it...

> Anyway, s_client's -starttls currently takes 2 protocols as argument,
> smpt or pop3.  I think it should just properly implement those
> protocols.  For SMTP that would mean sending the EHLO before STARTTLS.

Fixing the SMTP case would be good,
but allowing arbitrary textual handshake before TLS starts
wides the area of possible uses...

Bye

Goetz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org

iD8DBQFFhaWF2iGqZUF3qPYRAkDIAJ0YwH65A2oDzVE/Y5rKeqfDVvYgKwCfS2c3
rw4FQTcc2+9aCP59fZIFeRY=
=ewY4
-----END PGP SIGNATURE-----
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       openssl-dev@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to