Ask Your Question
0

For MACsec encrypted data, if I know the keys used for encryption, can I load them anywhere within Wireshark to show the original, 'unencrypted' data ?

asked 2023-10-31 19:41:24 +0000

smully gravatar image

I have a setup sending ethernet frames between a transmitter and receiver. The frames are encrypted using MACsec, and the keys are known to me. When using WIRESHARK to decode network traffic, is there any way to view the unencrypted data by providing the encryption keys to the tool ?

edit retag flag offensive close merge delete

1 Answer

Sort by ยป oldest newest most voted
0

answered 2023-10-31 22:02:10 +0000

Jaap gravatar image

Currently the MACsec dissector does not provide this capability. You could enter an enhancement request on our gitlab project while providing as much detail as possible, e.g. what kind of key material you would provide (PSK, or the SAK, etc) in this case.

edit flag offensive delete link more

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

Stats

Asked: 2023-10-31 19:41:24 +0000

Seen: 271 times

Last updated: Oct 31 '23