1 | initial version |
I would assume that you have disabled some dissector between the ethernet and TLS layer when analysing something on that Mac and then closed Wireshark. Wireshark automatically saves the configuration into your profile.
So verify that eth
(or, eventually, wlan
if you capture on wireless interface), ip
, tcp
, and ssl
dissectors are all enabled on that Mac. Also vlan
can theoretically be in the chain.