Ask Your Question

Revision history [back]

IS SSTP-dissector broken or can I simply not select it?

Hello.

Trying both my own capture and the example-files provided in the Wik (https://gitlab.com/wireshark/wireshark/-/wikis/SSTP)i. I cannot seem to get wireshark to display SSTP properly. In the example I am able to decrypt the TLS-stream, but now it only shows "HTTP continuation"-packets.

Trying to use "Decode As" will not allow me to select SSTP.

If I understand this correct SSTP is basically Data-in-PPP-in-HTTP-in-TLS.

IS SSTP-dissector broken or can I simply not select it?

Hello.

Trying both my own capture and the example-files provided in the Wik (https://gitlab.com/wireshark/wireshark/-/wikis/SSTP)i. Wiki (https://gitlab.com/wireshark/wireshark/-/wikis/SSTP). I cannot seem to get wireshark to display SSTP properly. In the example I am able to decrypt the TLS-stream, but now it only shows "HTTP continuation"-packets.

Trying to use "Decode As" will not allow me to select SSTP.

If I understand this correct SSTP is basically Data-in-PPP-in-HTTP-in-TLS.

IS SSTP-dissector broken or can I simply not select it?

Hello.

Trying both my own capture and the example-files provided in the Wiki (https://gitlab.com/wireshark/wireshark/-/wikis/SSTP). ( https://gitlab.com/wireshark/wireshark/-/wikis/SSTP ). I cannot seem to get wireshark to display SSTP properly. In the example I am able to decrypt the TLS-stream, but now it only shows "HTTP continuation"-packets.

Trying to use "Decode As" will not allow me to select SSTP.

If I understand this correct SSTP is basically Data-in-PPP-in-HTTP-in-TLS.