Wireshark mailing list archives

Re: Embed SSL keylog file in pcap-ng


From: Ahmad Fatoum <ahmad () a3f at>
Date: Fri, 4 May 2018 19:07:49 +0200

On 4May 2018, at 01:13, Ben Higgins <ben () extrahop com> wrote:

What I'd like to do is instead create a new pcap-ng block type that we can put SSL keylog file contents into verbatim.

How about a generic "Wireshark dissector preferences" pcapng block with { pref.key => value } tuples?
e.g. { ssl.keys_list => "127.0.0.1,4443,http,/home/dirkx/xx/privkey.pem" }


And when the capture file is closed, overridden preferences are reset.

Cheers
Ahmad


___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev () wireshark org>
Archives:    https://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request () wireshark org?subject=unsubscribe

Current thread: