Sunday 11 May 2014

How to use SSL scan in kali linux ??

// Introduction

SSLScan is a fast SSL port scanner. SSLScan connects to SSL ports and determines what ciphers are supported, which are the servers prefered ciphers, which SSL protocols are supported and returns the SSL certificate. Client certificates / private key can be configured and output is to text / XML.


// How to open

Application →Kali Linux → Information gathering → SSL Analysis → sslscan




or Open Terminal type sslscan and hit enter.



2. Here we are scanning a domain with simple sslscan command. 

Syntax – sslscan domain/host:port

Ex- sslscan  sail.co.in

We can also scan by IP.
   
// scan by IP:--
 


// Scan by Domain


As you can see there are different cipher that server accepted.


Here we can see it scan all type of ciphers which are possible on the target.

After completing the scan now you can see Prefered server cipher and SSL certification details.


3. This command is used to scan only accepted ciphers. Failed or rejected ciphers are ignored by this command.

Syntax:-  sslscan –no-failed sail.co.in


4. This command is used to scan only ssl3 ciphers.

Syntax:-  sslscan --ssl3 sail.co.in


5. This command is used to scan only tls1 ciphers.

Syntax:-  sslscan --tls1 sail.co.in


6.  This command is used to save scan outout in xml format.

Syntax :- sslscan --xml=filename domain/IP

Ex:- sslscan --xml=quiety 180.179.212.205


7.  Here you can see our saved output by ls command.


8. using leafpad we can see out output.

that's it 

image by:-geekyshows

1 comment:

  1. Do you need to increase your credit score?
    Do you intend to upgrade your school grade?
    Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
    Do you need any information concerning any database.
    Do you need to retrieve deleted files?
    Do you need to clear your criminal records or DMV?
    Do you want to remove any site or link from any blog?
    you should contact this hacker, he is reliable and good at the hack jobs..
    contact : cybergoldenhacker at gmail dot com

    ReplyDelete