Products by Protocol

Codenomicon TLS Server Test Tool Data Sheet

  • Test tool: Codenomicon TLS Server Test Tool
  • Direction: Server
  • Tagline: A Dependable Baseline for Internet Security

Codenomicon TLS Server Test Tool helps locate robustness and security flaws from your critical infrastructure. Such problems allow an attacker to gain unauthorized privileged access or cause denial-of-service conditions and unstable system behavior. Finding flaws early on during the software lifecycle saves development and maintenance costs, produces more stable systems, and enhances your product and corporate image.

TLS (Transport Layer Security) and its predecessor, SSL3 (Secure Sockets Layer), represents the current standard for communications privacy in the Internet. TLS is used in server and client applications ranging from web browsers to electronic banking software and e-commerce sites. As higher-level protocols often build upon it, the dependability of the underlying TLS implementation is an integral factor in the secure operation of a wide range of software products. The robustness and security of TLS/SSL software must be verified using Codenomicon TLS Server Test Tool.

Used specifications

Specification Title
RFC2104 HMAC: Keyed-Hashing for Message Authentication
RFC2246 The TLS Protocol Version 1.0
RFC2459 Internet X.509 Public Key Infrastructure
RFC3268 Advanced Encryption Standard (AES) Ciphersuites for Transport Layer Security (TLS)
draft-ssl3 The SSL Protocol Version 3.0

Test tool general features

  • Fully automated black-box negative testing
  • Ready-made test cases
  • Written in Java(tm)
  • GUI, command line, remote interface modes
  • Instrumentation (health-check) capability
  • Support and maintenance
  • Comprehensive user documentation
  • Results reporting and analysis

Tool-specific information

Tested messages Notes Specifications
Hello Request RFC2246
Client Hello RFC2246
Server Hello RFC2246
Server Certificate RFC2246
Server Key Exchange RFC2246
Certificate Request RFC2246
Server Hello Done RFC2246
Client Certificate RFC2246
Client Key Exchange RFC2246
Certificate Verify RFC2246
Change Cipher Spec RFC2246
Finished RFC2246
Application Data RFC2246
Alert RFC2246
Supported protocol features Notes Specifications
TLS default handshake with HTTP, FTP and POP3 payload RFC2246
TLS client authentication with null certificate RFC2246
TLS session resumption RFC2246
Supported TLS/SSL cipher suites Notes Specifications
TLS_RSA_WITH_NULL_MD5 RFC2246
TLS_RSA_WITH_NULL_SHA RFC2246
TLS_RSA_WITH_RC4_128_MD5 RFC2246
TLS_RSA_WITH_RC4_128_SHA RFC2246
TLS_RSA_WITH_DES_CBC_SHA RFC2246
TLS_RSA_WITH_3DES_EDE_CBC_SHA RFC2246
TLS_DHE_DSS_WITH_DES_CBC_SHA RFC2246
TLS_DHE_DSS_WITH_3DES_EDE_CBC_SHA RFC2246
TLS_DHE_RSA_WITH_DES_CBC_SHA RFC2246
TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA RFC2246
TLS_DH_anon_WITH_RC4_128_MD5 RFC2246
TLS_DH_anon_WITH_DES_CBC_SHA RFC2246
TLS_DH_anon_WITH_3DES_EDE_CBC_SHA RFC2246
TLS_RSA_WITH_AES_128_CBC_SHA RFC3268
TLS_DHE_DSS_WITH_AES_128_CBC_SHA RFC3268
TLS_DH_anon_WITH_AES_128_CBC_SHA RFC3268

This page lists the test tool data sheets available for sales and support. Please note that the information in these sheets is subject to periodical change.

Test Tool Datasheet: