Skip to content

Manual Testing

Ivan Ristic edited this page Aug 1, 2013 · 3 revisions

Renegotiation

See here http://blog.ivanristic.com/2009/12/testing-for-ssl-renegotiation.html

Session Resumption

Execute the following command:

$ openssl s_client -connect example.com:443 -reconnect -no_ticket 2>/dev/null | grep Session-ID:
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B
    Session-ID: DB170000465B0DA6E5AD501CF27E4854068681E37A78AD8F609C4CFA6E35756B

The above output, which shows 6 identical session IDs, demonstrates session resumption working correctly.