3 ms·
Aren’t most TLS implementations still using things like OpenSSL in userspace? How would the kernel get access to the request?
by treesknees 10mo ago
Aren’t most TLS implementations still using things like OpenSSL in userspace? How would the kernel get access to the request?
- iso1631 10mo agoA process with kernel level permissions can patch into userspace process an intercept calls. For example https://github.com/SebastienWae/sslsnoop https://github.com/SebastienWae/sslsnoop
- jcgl 10mo agoYou’ve still gotta do that for every TLS library used then. There’s a finite list of them of course, but it’s more than just a few.