Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] Trying to decode sshv2 traffic

From: Ahmed Zaki <ahmed.mahmoudzaki@xxxxxxxxx>
Date: Tue, 17 Jun 2014 23:41:05 +0300
Thank you Jeff.

Do you think we can submit it as a future enhancement?



On Tue, Jun 17, 2014 at 8:16 PM, Jeff Morriss <jeff.morriss.ws@xxxxxxxxx> wrote:
On 06/17/14 12:59, Ahmed Zaki wrote:
Dear All,

I captured SSHV2 trace file between two servers, I want to see the
decrypted packets.

Any ideas about how I can decrypt the packets?

I believe it is possible to collect the public keys from both servers,
Is this going to help?

Unfortunately, no.  The SSH dissector in Wireshark is not able to decrypt SSH packets.

See:

http://wiki.wireshark.org/SSH
___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe