Wireshark mailing list archives

Re: un-encrypted traffic over port 443


From: Jakub Zawadzki <darkjames-ws () darkjames pl>
Date: Sun, 29 Jun 2014 20:55:41 +0200

Hi,

On Sun, Jun 29, 2014 at 01:43:39PM +0200, Toralf Förster wrote:

/mew wonders if wireshark should print a warning if a http traffic goes
over port 443 (eg a TRAC temporarily configured at that port instead of
80) but is not encrypted, currently those packets are marked as "SSL"
but they aren't secure.

Could you try if enabling 'tcp.try_heuristic_first' option, does dissect packet as http?

Cheers,
Jakub.
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request () wireshark org?subject=unsubscribe


Current thread: