What protocol should I use to trace raw hex SSL traffic?


I'm tracing three IP addresses. Address A and Address B communicate with each other using HTTPS. Address C and B communicate with each other using raw packets that are encrypted using the same certificate as the other two. Address A and C are servers. My question is, when I configure Wireshark for SSL packets using the "SSL Decrypt Edit" form, what do I enter in the "protocol" field to trace hex data?

One Answer:


You can enter "data" as protocol, this will make Wireshark not interpret the decrypted data as any protocol, but it will just be shown as "data".

Thanks! Just what I needed.

Thanks! Just what I needed.