ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: [Wireshark-users] Unable to decrypt WPA traffic

From: "S.A. Moeys" <basmoeys@xxxxxxxxx>
Date: Mon, 19 May 2008 01:41:09 +0200
Hi,

I'm trying to monitor traffic on my home network. I got my wireless adapter in monitor mode, capturing traffic works fine when I remove WPA from my network. When WPA is on though, I do not succeed in decrypting the IEEE 802.11 packets. I've tried entering the SSID and WPA (TKIP) in numerous formats in the IEEE 802.11 protocol section in wireshark, trying every possible combination of security bit, FCS etc. but no usable data.

What am I doing wrong. I read that wireshark uses EAPOL packets to decrypt the data, but I'm not capturing any of those. Could that be the problem?

Thanks in advance.

Sebastian