Wireshark-dev: [Wireshark-dev] TDS : TLS Exchange

Date: Fri, 14 Aug 2020 13:49:39 +0000 (UTC)
Hello List,

I have a trace from a Microsoft SQL server using TDS.

Tabular Data Stream



It looks like the first part of it is the TLS exchange.   I am attaching trace.   Any thoughts on a potential breakout of this?

If I decode as TLS, then the application data packets appear to decode fine but not the TLS handshake.

Thoughts?

Nalini Elkins

Attachment: SQLServerTLS.pcapng
Description: Binary data