tcpdump mailing list archives

Re: libpcap and certificates


From: Peter Volkov <pva () gentoo org>
Date: Wed, 05 Oct 2011 21:41:00 +0400

В Чтв, 06/10/2011 в 02:06 +0900, Andrej van der Zee пишет:
Yes i am aware Wireshark can do it if you provide the private key, but
i need to decrypt packets in my own sniffer based on libpcap. I was
hoping i am not the first and somebody could gimme some startup
pointers, so that i dont have to go through the Wireshark sources... 

There are smaller and more specialized programs: 
ssldump http://www.rtfm.com/ssldump/
sslsnif http://thoughtcrime.org/software/sslsniff/

Probably it's easier to start with them.

--
Peter.

-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: