When my server do the SSL handshake with clients, it will receives a "client hello" message with two segments.
My server has a bug when deal with the two segments "client hello".
But Why SSL "client hello" message has two segments.The TCP MSS is 1280.
Do you have any idea?
Thanks a lot.
I captured packets on the clients after fixing the bug on the serer.
Before the bug was fixed, the client would send "RST" after "client hello".
asked 10 Sep '15, 08:45
edited 12 Sep '15, 04:22
There's nothing explicitly wrong with that, a correctly written server should handle that just fine.
It is odd though, that the Client Hello has been chopped into a 216 and 4 byte segments with a very small time delay between the 2.
I'm assuming the capture has been done on the server, can you capture on the client to see what's being transmitted?
answered 10 Sep '15, 09:36