SSL::sessionsecret

Description

This command returns the current SSL handshake master secret.
Note: Additional usage details in AskF5 article K16700

Syntax

SSL::sessionsecret

Examples

when CLIENTSSL_HANDSHAKE {
    log local0. "ClientSSL: Secret for [SSL::sessionid] is -> [SSL::sessionsecret]"
}
when SERVERSSL_HANDSHAKE {
    log local0. "ServerSSL: Secret for [SSL::sessionid] is -> [SSL::sessionsecret]"
}

Sample log output:
<CLIENTSSL_HANDSHAKE>: ClientSSL: Secret for 0a2ab9cb944a147b173641e1e9db54e0ac09d6a26a00ea468eda1c4607648700 is -> 03038ad67cc5e78f0de0125d06fb0908ac018c22f457c9f915f1bc425347f86021b40f50bb7369a867c9a99aa897f85c
<SERVERSSL_HANDSHAKE>: ServerSSL: Secret for 0a2ab9cb944a1478173641e1e9db57e0f5a5cd3433acf1de8eda1c4607648059 is -> 03d4584cd4251f8b911dfc9798017630f0f1b39e41e40e47f0dc0df73249b898d867b0b2567858b4767b353478ad6922d10e3c1a1cd471bc12e3b44bbe6524e9