Difference between revisions of "Talk:ClCertA"
Jump to navigation
Jump to search
m (+Question) |
|||
Line 1: | Line 1: | ||
I have grabbed the "CTR Common Prod 1" certification file (from WireShark, So i only have its public key. If i have that private key i would try to look into the indeed decrypted data transformed). That is all the same '''despite the regions''' the devices have (sorry i only have the ones from J and U now, but i may gain more). If you need that, email me (luxsie@163.com) --[[User:Syphurith|Syphurith]] 17:33, 28 March 2013 (CET) | I have grabbed the "CTR Common Prod 1" certification file (from WireShark, So i only have its public key. If i have that private key i would try to look into the indeed decrypted data transformed). That is all the same '''despite the regions''' the devices have (sorry i only have the ones from J and U now, but i may gain more). If you need that, email me (luxsie@163.com) --[[User:Syphurith|Syphurith]] 17:33, 28 March 2013 (CET) | ||
:You can't decrypt *any* SSL data with the SSL client private key at all, the server private key is used for that.(Which is not possible to obtain of course) "That is all the same despite the regions the devices have" This title is used for all regions. --[[User:Yellows8|Yellows8]] 17:44, 28 March 2013 (CET) | :You can't decrypt *any* SSL data with the SSL client private key at all, the server private key is used for that.(Which is not possible to obtain of course) "That is all the same despite the regions the devices have" This title is used for all regions. --[[User:Yellows8|Yellows8]] 17:44, 28 March 2013 (CET) | ||
+ | ::Well then. where do you think that a private key may been while in runtime? okey.. I saw you are now detecting those APIs (PSPXI), is there any chance to decrypt the package and get that private key now? BTW what i remembered is that ''you can decrypt those sent by server if you have the private key (at least the ClientKeyExchange).'' --[[User:Syphurith|Syphurith]] 18:01, 28 March 2013 (CET) |
Revision as of 18:01, 28 March 2013
I have grabbed the "CTR Common Prod 1" certification file (from WireShark, So i only have its public key. If i have that private key i would try to look into the indeed decrypted data transformed). That is all the same despite the regions the devices have (sorry i only have the ones from J and U now, but i may gain more). If you need that, email me (luxsie@163.com) --Syphurith 17:33, 28 March 2013 (CET)
- You can't decrypt *any* SSL data with the SSL client private key at all, the server private key is used for that.(Which is not possible to obtain of course) "That is all the same despite the regions the devices have" This title is used for all regions. --Yellows8 17:44, 28 March 2013 (CET)
- Well then. where do you think that a private key may been while in runtime? okey.. I saw you are now detecting those APIs (PSPXI), is there any chance to decrypt the package and get that private key now? BTW what i remembered is that you can decrypt those sent by server if you have the private key (at least the ClientKeyExchange). --Syphurith 18:01, 28 March 2013 (CET)