2
0
mirror of https://github.com/mozilla/cipherscan.git synced 2026-02-05 22:55:15 +01:00

Commit Graph

  • b80b5cdd35 hide errors when json format is used Julien Vehent 2014-10-10 17:27:58 -04:00
  • 278dab4800 Fix json date argument to be compatible on macos Julien Vehent 2014-10-10 17:27:29 -04:00
  • f6f4fe8b86 Find timeout binary on linux and mac Julien Vehent 2014-10-10 17:19:44 -04:00
  • c7c91ff5f8 updated authors Julien Vehent 2014-10-10 16:56:06 -04:00
  • d5685da796 check that provided openssl is executable, fall back to system one if not Julien Vehent 2014-10-10 16:56:00 -04:00
  • 26aa8f9408 cleanups Julien Vehent 2014-10-10 16:55:34 -04:00
  • 7d2c8b4cad Use local ca bundle if none is found on the system, fixes issues with MacOS Julien Vehent 2014-10-10 16:55:09 -04:00
  • cc1230efd9 Analysis wording changes Julien Vehent 2014-10-09 10:09:44 -04:00
  • a722ad177d updated README with analysis info Julien Vehent 2014-10-09 10:03:19 -04:00
  • 5665951b09 minor analysis wording changes Julien Vehent 2014-10-09 09:57:40 -04:00
  • 215dbd0c1a ignore openssl errors in analyze.py Julien Vehent 2014-10-09 09:54:30 -04:00
  • e9110c6bc8 gitignore Julien Vehent 2014-10-09 09:36:08 -04:00
  • 405b104583 improved configuration analysis Julien Vehent 2014-10-09 09:35:59 -04:00
  • 2858ef8116 Revert "no need to grep the input when we're using awk" Julien Vehent 2014-10-08 21:53:22 -04:00
  • 34b2eb7819 First shot at cipherscan results analyzer Julien Vehent 2014-10-08 21:53:05 -04:00
  • ca0ef2fc5c fixes for the pull request #18 Hubert Kario 2014-10-04 14:46:36 +02:00
  • 29109f1e64 update SEED and IDEA classification, do a total of broken ciphers Hubert Kario 2014-10-04 12:51:34 +02:00
  • 4c05897be2 no need to grep the input when we're using awk Hubert Kario 2014-07-12 01:43:54 +02:00
  • fb02ae87ac add some comments, group related code Hubert Kario 2014-07-03 19:09:55 +02:00
  • 77671137df add support for CApath Hubert Kario 2014-07-03 19:02:33 +02:00
  • 189460da9e report if server uses client side or server side cipher ordering Hubert Kario 2014-06-30 23:03:55 +02:00
  • a7ae42b08e openssl in -ssl2 mode doesn't tolerate -servername option Hubert Kario 2014-06-30 23:03:27 +02:00
  • 3a4a5f938d add missing ocsp_staple header Hubert Kario 2014-06-25 14:37:21 +02:00
  • 8a0c9190a9 sort reported TLS session ticket hint using natural sort Hubert Kario 2014-06-24 15:59:24 +02:00
  • ded65c40df Merge pull request #22 from simondeziel/sdeziel Julien Vehent 2014-08-28 16:02:36 -04:00
  • ecd77f94fc Merge pull request #18 from tomato42/wip Julien Vehent 2014-08-28 16:02:19 -04:00
  • 7dee967dd7 Attempt to use /etc/ssl/certs/ca-certificates.crt if no CACERTS are available. On Debian, this is the default location for system-wide trust anchors. Simon Deziel 2014-07-25 10:01:31 -04:00
  • 273211f025 Merge pull request #21 from azet/master Julien Vehent 2014-07-17 12:29:42 -04:00
  • efd84cdb24 add real execution tracing to debug Aaron Zauner 2014-07-17 18:08:29 +02:00
  • e345f6034d Merge pull request #20 from PeterMosmans/binaries Julien Vehent 2014-07-13 09:22:24 -04:00
  • b65c13c7b9 Compiled for 64-bit-linux from the following source: Peter Mosmans 2014-07-13 20:56:17 +10:00
  • 26a24d0429 Updated binary with latest 1.0.2-chacha build Peter Mosmans 2014-07-12 10:15:00 +10:00
  • 60a6a02c6f Merge pull request #19 from phlipper/patch-1 Julien Vehent 2014-06-25 19:37:53 -04:00
  • 5ae2132f23 minor typo fix Phil Cohen 2014-06-25 16:28:48 -07:00
  • 7591062bbc parse_results.py: compatibility with old results files Hubert Kario 2014-06-04 18:52:39 +02:00
  • be0439ef99 provide statistics for all key exchange methods, not DHE and ECDHE only Hubert Kario 2014-06-04 18:17:41 +02:00
  • 3667b04ad7 correctly count broken cipher suites with "no reporting of untrusted" Hubert Kario 2014-06-04 18:17:02 +02:00
  • 86ff1122cc parse_results.py: don't count anonymous cipher suites toward correct config stats Hubert Kario 2014-06-04 15:15:32 +02:00
  • ee81927200 fix cipherscan human-readable output - pfs_keysize option Hubert Kario 2014-05-30 11:49:44 +02:00
  • b69863c5c5 Merge branch 'master' of github.com:jvehent/cipherscan Julien Vehent 2014-05-20 08:52:09 -04:00
  • 50f4959e79 updated license on parse_results.py Julien Vehent 2014-05-20 08:23:57 -04:00
  • 2f56f0515e don't scan the same host twice Hubert Kario 2014-05-16 18:16:45 +02:00
  • f1d3b51749 update the top 1M list to the version from 2014-05-16 Hubert Kario 2014-05-16 17:34:22 +02:00
  • 4e94d95bd8 ask for OCSP stapling by default Hubert Kario 2014-05-16 17:31:44 +02:00
  • 0777682aa6 collect TLS ticket lifetime hints Hubert Kario 2014-05-16 16:55:19 +02:00
  • 1a78172936 scan just one host per hostname Hubert Kario 2014-05-16 16:11:01 +02:00
  • cdbf596466 properly handle pure IP adressess Hubert Kario 2014-05-16 15:42:47 +02:00
  • 5ef53dda9c increase paralelism of jobs Hubert Kario 2014-05-08 03:13:45 +02:00
  • a213fc45d0 remove the folder/file part from url Hubert Kario 2014-05-08 02:06:57 +02:00
  • 00b20a20ed perform SNI enabled scan Hubert Kario 2014-05-08 02:03:50 +02:00
  • c48c012771 use the same openssl for all tasks Hubert Kario 2014-05-07 15:49:26 +02:00
  • 5dfa3c444e put ECDSA ciphers before RSA ciphers Hubert Kario 2014-04-30 16:33:41 +02:00
  • a0cb766381 add support for archlinux Hubert Kario 2014-04-26 22:44:52 +02:00
  • 8817a7b1c8 testtop1m.sh: correct counting of background jobs Hubert Kario 2014-04-26 22:43:44 +02:00
  • 92851d7c74 Merge pull request #17 from tomato42/proper-quit Julien Vehent 2014-05-12 13:36:46 -04:00
  • dca614d218 use proper quit semantic for openssl s_client Hubert Kario 2014-05-09 14:44:50 +02:00
  • 5417dacda3 Merge pull request #16 from tomato42/restore-timeout Julien Vehent 2014-05-09 08:32:36 -04:00
  • d7b99f125e restore timeout Hubert Kario 2014-05-09 12:00:53 +02:00
  • 325329d1ad Merge pull request #15 from tomato42/reporting-improvements-03 Julien Vehent 2014-04-20 13:16:34 -04:00
  • ba4defb707 Merge pull request #14 from tomato42/scan-improvements-02 Julien Vehent 2014-04-20 13:15:44 -04:00
  • 686d7c958b extend reporting of RC4-related stats Hubert Kario 2014-04-06 14:19:37 +02:00
  • 21bba67df0 extend SSL stats Hubert Kario 2014-04-06 14:17:24 +02:00
  • 349d4ebc3c more detailed PFS report Hubert Kario 2014-04-06 14:15:32 +02:00
  • d3b6f9b507 fix reporting of the TLS1.2 but not TLS1.1 Hubert Kario 2014-04-06 14:13:44 +02:00
  • c8abfb53e8 add support for Chacha20 based ciphers Hubert Kario 2014-04-06 14:11:52 +02:00
  • 2b794ebfe0 fix and extend reporting of AES-GCM ciphers Hubert Kario 2014-04-06 14:09:03 +02:00
  • fd6fcdd359 fix spelling in TLS stats (TLS1_1 vs TLS1.1) Hubert Kario 2014-04-06 14:06:18 +02:00
  • faef8d692f in "no-untrusted mode": filter out ADH and AECDH suites Hubert Kario 2014-04-05 20:21:35 +02:00
  • 45dc1da3f6 add ability to ignore results from untrusted servers Hubert Kario 2014-04-05 01:33:33 +02:00
  • ff620f5b26 report number of servers that use ECDSA and RSA certificates Hubert Kario 2014-04-04 21:08:38 +02:00
  • 863441a179 parsing of signature algorithm and key size Hubert Kario 2014-04-04 20:18:36 +02:00
  • b6b9a1a364 Improve scanning performance and reduce false negatives Hubert Kario 2014-04-04 20:12:50 +02:00
  • 370348ba1b Updated README Julien Vehent 2014-04-19 12:04:09 -04:00
  • f703ca9c26 Merge pull request #12 from tomato42/certificate-scanning-02 Julien Vehent 2014-04-19 11:46:25 -04:00
  • 4e0e03b61e make default output more narrow Hubert Kario 2014-04-06 18:01:13 +02:00
  • 9931ca2a2d update README with new examples Hubert Kario 2014-04-05 19:40:19 +02:00
  • f04567d40e check if certificate used by server is trused Hubert Kario 2014-04-05 19:36:51 +02:00
  • 946cc6a9ac Report the signature type used on server certificate Hubert Kario 2014-04-05 19:21:59 +02:00
  • f9fdd62a59 report key size used in server's certificate Hubert Kario 2014-04-05 19:09:05 +02:00
  • 32eba4e644 update examples from README Hubert Kario 2014-04-05 18:46:41 +02:00
  • ac3e5f4d62 Correctly report TLSv1.2 only ciphers as negotiable with TLSv1.2 Hubert Kario 2014-04-03 23:37:46 +02:00
  • afcc92db02 Merge pull request #5 from mzeltner/master Julien Vehent 2014-04-04 21:26:59 -04:00
  • 05bd24b405 Cleaning up old style, fixing --allciphers Michael Zeltner 2014-04-04 20:46:40 -04:00
  • bf48cd2a3c Documenting how to build OpenSSL with ChaCha20-Poly1305 Michael Zeltner 2014-04-01 14:29:55 -04:00
  • 45f0f3305d Merge branch 'master' of https://github.com/MacLemon/cipherscan Michael Zeltner 2014-04-01 13:04:08 -04:00
  • 49214fc508 Verbose and Debug output go to stderr now. Added simple --delay function. Pepi Zawodsky 2014-02-18 02:05:26 +01:00
  • 8480e63ff7 Fixing a typo Michael Zeltner 2014-02-14 20:44:15 +01:00
  • 3282c2c3a5 Improved reference of switches documentation formatting. Pepi Zawodsky 2014-02-10 19:46:46 +01:00
  • 0282ae9209 Added simple debug function Pepi Zawodsky 2014-02-08 18:37:30 +01:00
  • 0d93b5d37e Updated README to reflect the changes in cipherscan. Pepi Zawodsky 2014-02-08 17:07:54 +01:00
  • 490c86c43e Changed grep invocation to prevent strange grep versions to balk on -E Pepi Zawodsky 2014-02-08 01:14:40 +01:00
  • 26b52d4e17 Make mktemp obsolete Michael Zeltner 2014-02-07 00:56:31 +01:00
  • 57f41d7376 Fixed variable renaming. Pepi Zawodsky 2014-02-06 23:32:12 +01:00
  • 9e5ce9cca3 Removed neccessity for timeout, thanks to mzeltner. Better parameter parsing with short- and longoptions. Can now pass a path to use any openssl. Now works on OS X. Pepi Zawodsky 2014-02-06 23:26:19 +01:00
  • 1f92094b3d Merge pull request #4 from mzeltner/master Julien Vehent 2014-02-02 18:15:27 -08:00
  • 5c07a6e552 Support s_client args, give -starttls example Michael Zeltner 2014-02-02 15:41:16 +01:00
  • ae5d7ad15c Merge branch 'master' of github.com:jvehent/cipherscan Julien Vehent 2014-01-31 10:24:02 -05:00
  • b3ca13a5ae Rebuilt openssl to support ChaCha20/Poly1305. Test against google servers. Julien Vehent 2014-01-31 10:22:21 -05:00
  • 5e8b495a18 added many tests Julien Vehent 2014-01-11 01:07:32 +00:00
  • 1414973531 basic results parsing script in python Julien Vehent 2014-01-10 05:50:03 +00:00