Added client handshakes

This commit is contained in:
Dirk 2019-04-23 21:18:08 +02:00
parent e72e7728c7
commit 1edfcbc909

View File

@ -82,14 +82,14 @@ Update notification here or @ [twitter](https://twitter.com/drwetter).
* JSON output now valid also for non-responding servers * JSON output now valid also for non-responding servers
* Testing now per default 370 ciphers * Testing now per default 370 ciphers
* Further improving the robustness of TLS sockets (sending and parsing) * Further improving the robustness of TLS sockets (sending and parsing)
* Support of supplying timeout value for ``openssl connect`` -- useful for batch/mass scanning * Support of supplying timeout value for `openssl connect` -- useful for batch/mass scanning
* File input for serial or parallel mass testing can be also in nmap grep(p)able (-oG) format * File input for serial or parallel mass testing can be also in nmap grep(p)able (-oG) format
* LOGJAM: now checking also for DH and FFDHE groups (TLS 1.2) * LOGJAM: now checking also for DH and FFDHE groups (TLS 1.2)
* PFS: Display of elliptical curves supported, DH and FFDHE groups (TLS 1.2 + TLS 1.3) * PFS: Display of elliptical curves supported, DH and FFDHE groups (TLS 1.2 + TLS 1.3)
* Check for session resumption (Ticket, ID) * Check for session resumption (Ticket, ID)
* TLS Robustness check (GREASE) * TLS Robustness check (GREASE)
* Expect-CT Header Detection * Expect-CT Header Detection
* --phone-out does certificate revocation checks via OCSP (LDAP+HTTP) and with CRL * `--phone-out` does certificate revocation checks via OCSP (LDAP+HTTP) and with CRL
* Fully OpenBSD and LibreSSL support * Fully OpenBSD and LibreSSL support
* Missing SAN warning * Missing SAN warning
* Added support for private CAs * Added support for private CAs
@ -105,6 +105,7 @@ Update notification here or @ [twitter](https://twitter.com/drwetter).
* More robustness for any STARTTLS protocol (fall back to plaintext while in TLS) * More robustness for any STARTTLS protocol (fall back to plaintext while in TLS)
* Fixed TCP fragmentation * Fixed TCP fragmentation
* Added `--ids-friendly` switch * Added `--ids-friendly` switch
* Major update of client simulations with self-collected data
[Planned for 3.0](https://github.com/drwetter/testssl.sh/milestone/4). [Planned for 3.0](https://github.com/drwetter/testssl.sh/milestone/4).