- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
decreypt pcap with wireshark
Dear People,
i have a problem, that I can decrypt the pcap file in Headquarter Fortigate but in Branch only on ISP Router and not behind of ISP Router on Fortigate Packet Capture.
FGHQ-->ISP-Router ----------------ISP-Router<--Fortigate Branch
Did somebody know why?
- Labels:
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Kaplan,
Thank you for using the Community Forum.
I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Regards,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Kaplan,
I have found this KB article:
Could you please tell me if it helps?
Regards,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Kaplan,
it will help to understand what you are actually trying to decrypt/decode. Is it IPsec traffic as Anthony guessed, or are you trying to decode a "sniffer 6" packet capture?
Best regards,
Markus
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello Markus,
thax for your help.It is the IPSEC traffic.
I tried it to decrypt with dia vpn tunnel list name VPNTU
I could decrypt it in one side,but not on other side.I will try with the article.
sniffer with 6 with same result
Thanx a lot