Loading...

Analyse network traffic capture with Wireshark

:heavy_exclamation_mark: This post is older than a year. Consider some information might not be accurate anymore. :heavy_exclamation_mark:

Wireshark is an open source network protocol analyzer. Captures from networking traffic with Wireshark or tcpdump can easily be analyzed in the GUI. This post show how to decode TCP as SSL protocol during the SSL/TLS handshake.

In the network traffic the ports are listed. We chose port 50100. wireshark-01 Via the context menu, we can choose Decode as. wireshark-02 I know that SSL/TLS is handled, therefore in the dialog I choose SSL. wireshark-03 After the instruction, we can investigate the SSL protocol. wireshark-04

ssl
Please remember the terms for blog comments.