Hi Well i am looking at network traffic through wireshark for https request I have configured my ssl decryption and it is working fine. But I am crurious about the structure of reassembled SSL Segment. on the transaction i am looking at the https request from d client has 2 TLSV1 record layers. so wireshark reassembles this layer segments and then decripts. both layers have the Encrypted application data layers. but how does it reasseble the segment is it like "Encrypted application data layer 1 +(concat) Encrypted application data layer 2" then decrypt or then that = to the Reassembled SSL segment or the is filtered data when reassembling the segment or additional data. asked 02 Nov '15, 00:03 xslammer |
I'm sorry, but it's unclear what you are asking for. Please rephrase your question.