原文:https://blog.csdn.net/biqu5401/article/details/100948718
以访问www.sina.com.cn为例,抓包解析TLS1.2到底是如何通信的;
wireshark抓包内容及简单说明:
100.042384192.168.10.97101.71.100.123TLSv1.2264Client Hello
120.059895101.71.100.123192.168.10.97TLSv1.21506Server Hello
160.060412101.71.100.123192.168.10.97TLSv1.21386Certificate, Server Key Exchange, Server Hello Done
180.063282192.168.10.97101.71.100.123TLSv1.2180Client Key Exchange, Change Cipher Spec, Encrypted Handshake Message
190.073250101.71.100.123192.168.10.97TLSv1.2312New Session Ticket, Change Cipher Spec, Encrypted Handshake Message
200.073250101.71.100.123192.168.10.97TLSv1.2123Application Data
Client Hello:客户端向服务端打招呼;携带各种信息供服务端选择;
Server Hello:服务端回应客户客户端的招呼信息;结合客户端、服务端的信息,选择合适的加密套件;
Certificate:服务端向客户端发送自己的数字证书(此证书包含服务端的公钥),以实现客户