Created on 01-13-2020 02:05 AM Edited on 03-01-2024 05:47 AM By Jean-Philippe_P
Description
This article describes how to decrypt TLS traffic generated by the browser (Windows operating system).
Scope
For Microsoft Windows products.
Solution
Note that decrypting TLS traffic may expose sensitive information.
Select 'New' and add a new user variable 'SSLKEYLOGFILE' and point it at the location (full path) for the TLS session keys log file.
Open a '.pcap' file in Wireshark.
In case traffic is decrypted correctly, there will be a 'Decrypted SSL data' tab in the left bottom corner.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.