Wireshark-bugs: [Wireshark-bugs] [Bug 5692] TLSv1 ignored unknown record
Date: Mon, 14 Feb 2011 07:47:47 -0800 (PST)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5692

--- Comment #5 from Simon Hradecky <shradecky@xxxxxxxxxxxxx> 2011-02-14 07:47:45 PST ---
Hello, Sake,

no, I don't even see the http response header in clear text (sent you a private
e-mail, too). No gzip or other compression of content:

response header in direct packet decrypt (but not shown in "follow SSL
stream"):

HTTP/1.0 200 OK
Date: Fri, 11 Feb 2011 11:23:25 GMT
Server: Apache/2.2.17 (Unix) mod_ssl/2.2.10 OpenSSL/0.9.8h mod_perl/2.0.4
Perl/v5.10.0
Last-Modified: Fri, 11 Feb 2011 11:02:09 GMT
ETag: "fcc301-135f9-49bffa11f6e40"
Accept-Ranges: bytes
Content-Length: 79353
Connection: close
Content-Type: image/jpeg

The follow SSL stream shows:

remainder of http request followed by first bytes of server reply:

...
00000150  30 3b 20 48 50 4e 54 44  46 3b 20 2e 4e 45 54 34 0; HPNTD F; .NET4
00000160  2e 30 43 3b 20 2e 4e 45  54 34 2e 30 45 29 0d 0a .0C; .NE T4.0E)..
00000170  41 63 63 65 70 74 2d 45  6e 63 6f 64 69 6e 67 3a Accept-E ncoding:
00000180  20 67 7a 69 70 2c 20 64  65 66 6c 61 74 65 0d 0a  gzip, d eflate..
00000190  48 6f 73 74 3a 20 77 77  77 2e 6e 6f 6d 69 73 73 Host: ww w.nomiss
000001A0  6f 66 74 2e 63 6f 6d 0d  0a 43 6f 6e 6e 65 63 74 oft.com. .Connect
000001B0  69 6f 6e 3a 20 4b 65 65  70 2d 41 6c 69 76 65 0d ion: Kee p-Alive.
000001C0  0a 0d 0a                                         ...
    00000000  dd 19 be 2d 04 9a 12 8a  88 f1 68 20 88 38 ac 4d ...-.... ..h
.8.M
    00000010  77 15 3d d8 e3 b9 1d cc  d2 d3 21 fd c8 a8 fc db w.=.....
..!.....
    00000020  2a 51 86 63 7b c1 3a b2  24 89 a7 b9 a2 b2 15 be *Q.c{.:.
$.......
    00000030  d6 53 3c 3c 13 4e 7d 11  56 39 7e e9 3a 3f c0 be .S<<.N}.
V9~.:?..
    00000040  a6 11 1c 38 c1 b2 b6 46  fb 8d df 68 27 88 ba 4a ...8...F
...h'..J
    00000050  f3 d5 d8 a7 57 67 91 69  a7 7d 8c b1 53 c3 ec 67 ....Wg.i
.}..S..g
    00000060  73 16 49 99 70 87 06 49  47 59 14 91 7c 60 dc 99 s.I.p..I
GY..|`..
    00000070  1d d6 92 5d de a3 a5 e2  d3 65 a7 0f b9 d0 f7 37 ...]....
.e.....7
    00000080  ce a1 3b ef 04 55 93 3c  94 d5 5a c0 f4 d3 bd 95 ..;..U.<
..Z.....
    00000090  50 27 06 b4 37 69 25 93  66 4d e3 93 16 44 8c a9 P'..7i%.
fM...D..
    000000A0  5a 94 3a 47 cb 91 b3 a5  60 9d 50 cc a9 82 b7 66 Z.:G....
`.P....f
    000000B0  8c 31 2a df 51 52 a9 8e  0d 52 67 61 d3 4d b8 69 .1*.QR..
.Rga.M.i
    000000C0  d2 4c 0b 4b c3 2a 55 53  83 18 83 2f 03 d2 67 71 .L.K.*US
.../..gq
...

Server key to come.

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.