Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] Wrong protocol detection - wrong decryption

From: bitozoid <bitozoid@xxxxxxxxx>
Date: Mon, 16 Apr 2012 15:26:37 +0100
It's finally working. I downgraded GnuTls from 2.12.18 to 2.10.5.

Thanks

On Tue, Apr 10, 2012 at 11:28 AM, Sake Blok <sake@xxxxxxxxxx> wrote:
> On 4 apr 2012, at 17:04, bitozoid wrote:
>
>> On Wed, Apr 4, 2012 at 12:40 PM, Sake Blok <sake@xxxxxxxxxx> wrote:
>>> Have you used "start_tls" instead of the port number in your SSL-keys list? So something like:
>>>
>>> 1.2.3.4,start_tls,smtp,/tmp/key.pem
>>
>> I have tried both. Same result.
>
>
> With the start_tls option, you should at least see the pre-TLS command and responses dissected as SMTP and not SSL. Just checking, you did not try them both at the same time. You should use one or the other :-)
> Are you able to post the capture file and ssl-debug file? And if it is in a test-environment, the private key?
>
> Cheers,
> Sake
> ___________________________________________________________________________
> Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
> Archives:    http://www.wireshark.org/lists/wireshark-users
> Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
>             mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe