Secure Sockets Layer (SSL) 'STARTTLS' Client Detection

info Nessus Network Monitor Plugin ID 9133

Synopsis

This client has initiated the 'STARTTLS' command with a remote server.

Description

This host has initiated a 'STARTTLS' connection with a remote server. 'STARTTLS' is an extension to plain text communication protocols, which offers a way to upgrade a plain text connection to an encrypted (TLS or SSL) connection instead of using a separate port for encrypted communication.

Solution

Ensure that such behavior is in alignment with corporate policies and guidelines.

See Also

http://en.wikipedia.org/wiki/STARTTLS

Plugin Details

Severity: Info

ID: 9133

Family: Generic

Published: 3/9/2016

Updated: 11/23/2016