[stunnel-users] stunnel tls wrapper/proxy for xmpp

C.J. Adams-Collier cjac at colliertech.org
Tue Feb 3 00:06:23 CET 2009


On Mon, Feb 02, 2009 at 02:20:18PM -0800, Brian Hatch wrote:
> Roughly around 2009-02-02 13:31 -0800, C.J. Adams-Collier broached:
> 
> > I'm new here, and I didn't see anything relating to this after a quick
> > glance at the archives.  I'd like to start a stunnel connection
> > connected to the google talk server and then connect finch up to that
> > so that I can tap the clear xmpp session using tcpdump.  Can one of
> > you help me?
> 
> 5222 requires starttls for xmpp, which stunnel doesn't support.
> 
> 5223 is wrapped ssl and would work for you.

Thanks Brian,

That almost works, too!  I think google only does TLS (5222) though.

23:01:03.594856 IP colliertech.org.35052 > od-in-f83.google.com.5223: S 2704797155:2704797155(0) win 5840 <mss 1460,sackOK,timestamp 133784958 0,nop,wscale 1>
23:01:06.591987 IP colliertech.org.35052 > od-in-f83.google.com.5223: S 2704797155:2704797155(0) win 5840 <mss 1460,sackOK,timestamp 133785708 0,nop,wscale 1>

Was there a silent "yet" at the end of your "doesn't support" comment
above? :) Do you need beta testers for this new feature?

Cheers,

C.J.

 
> 
> -- 
> Brian Hatch                  Error 23 occurred when
>    Systems and                attempting to report
>    Security Engineer          error 23.
> http://www.ifokr.org/bri/
> 
> Every message PGP signed


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 197 bytes
Desc: Digital signature
URL: <http://www.stunnel.org/pipermail/stunnel-users/attachments/20090202/b9afeef2/attachment.sig>


More information about the stunnel-users mailing list