Apr 15, 2014
Mar 6, 2014
dict.copy() always returns a turd-free dictionary
Feb 20, 2014
he’s about to get gang banged on the code review
Feb 20, 2014
Jan 31, 2014

You Might Not Need jQuery

Jan 28, 2014

Debugging SSL traffic with ssldump and nginx

I have recently needed to inspect some SSL traffic to a server and it took me longer than 15 minutes to figure it out. I’ve documented what worked for me here.


ssldump 0.9b3
OpenSSL 1.0.1e-fips 11 Feb 2013

Using a centos VM in EC2, have nginx installed with ssl module receiving traffic on port 443. This is the relevant changes to the conf that I had to make to get it to work:

ssl_ciphers                          MD5;
ssl_protocols                       SSLv3 TLSv1;
ssl_prefer_server_ciphers   on;

Notably I had to dumb down the ciphers nginx was allowed to use and specifically use one that I knew ssldump could decrypt (you can’t use any of the elliptical curve diffie hellman ciphers with ssldump, it just aint gonna work).

I then ran the ssldump command like so:

ssldump -a -A -H -d -k /opt/nginx/ssl/server.key port 443

I was able to see decrypted traffic coming and and continue debugging my problem. Yeehaw.

Jan 27, 2014
Jan 26, 2014
Jan 24, 2014
Dec 21, 2013

Pope Francis Declares That "All Religions Are True"€

How the fuck did I miss this? Bravo pope, bravo.

Dec 18, 2013

Fucking Ubuntu

I use lots of VMs with Ubuntu. Periodically apt-get will fail due to the something like the following:

Temporary failure resolving 'br.archive.ubuntu.com'
E: Unable to fetch some archives, maybe run apt-get update or try with --fix-missing?

So for some reason I have to go edit /etc/apt/sources.list and remove the bullshit from the archive paths. I forget this and have to do it every 3 months when Ubuntu releases another minor version.

Dec 11, 2013

god damn

Oct 18, 2013

Butter coffee

Today I had paleo-friendly coffee with grass-fed butter. I regret the decision.

Oct 3, 2013

If you’re reading about lxc, you don’t need clarification about what a pid is.

Sep 11, 2013
« To the past Page 1 of 32