Ask Your Question
0

I am getting a Encryption alert from the Server and connection resets

asked 2018-04-11 00:30:52 +0000

this post is marked as community wiki

This post is a wiki. Anyone with karma >750 is welcome to improve it.

I am getting a Encryption alert from the Server after the server and client have exchanged application data. The Error codes do not seem consistent between the Alert Description Types. This is happening in my Proxy to external server, after this encrypted alert proxy is reseting the connection and the proxy clients are getting gateway timeouts. Why would the proxy getting an alert after several application packets have passed successfully? Thank you in advance

edit retag flag offensive close merge delete

1 Answer

Sort by ยป oldest newest most voted
0

answered 2018-04-11 06:11:00 +0000

Uli gravatar image

To clarify:

You talk about SSL/TLS connections? You get a TLS Record with content type "Alert" (21)?

This "alert" is used in SSL/TLS for notifying to close the connection. So it's quit normal to see "Encrypted Alert" at the end of a SSL/TLS session. Normally when there is no more data to send, the sender sends this TLS Alert.

edit flag offensive delete link more

Comments

Hi Thanks for your reply.

Actually my traffic flow is Client--> proxy --> Server. in the flow client and server is exchanging the application data, at some point Server is sending Encrypted alert (21) is sending to proxy and so proxy is resetting the connection, so proxy sends back gateway timeout to the client. here why server is sending this alert in the middle of application data transaction. thanks in advance.

Saravanan gravatar imageSaravanan ( 2018-04-12 06:53:12 +0000 )edit

As said, most of the times, a "Encrypted Alert" record contains the "Close notify" message. To be sure what's inside the "Encrypted Alert" message you need the plaintext.

If your client application is a browser (e.g. Chrome or Firefox) you can give it a try with using SSLKEYLOG (s. https://www.youtube.com/watch?v=bwJEB...)

Uli gravatar imageUli ( 2018-04-12 12:22:55 +0000 )edit

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

1 follower

Stats

Asked: 2018-04-11 00:30:52 +0000

Seen: 33 times

Last updated: Apr 11