Ask Your Question

Revision history [back]

Wireshark doesn't dissect Emails recieved via POP3

The POP3 packets are encrypted with SSL and are ariving on Port 995.I am using the corresponding SSLKEYLOGFILE. Wireshark shows the POP Layer but the Emails are not correctly parsed. "From", "To", "Subject" and so on aren't serperate fields. Also longer messages, that arive as multiple POP packets, aren't reassembled. Apart from the SSLKEYLOGFILE i am only using the "default settings". What am i doing wrong?

Wireshark doesn't dissect Emails recieved via POP3

The POP3 packets are encrypted with SSL and are ariving on Port 995.I am using the corresponding SSLKEYLOGFILE. Wireshark shows the POP Layer but the Emails are not correctly parsed. "From", "To", "Subject" and so on aren't serperate fields. Also longer messages, that arive as multiple POP packets, aren't reassembled. Apart from the SSLKEYLOGFILE i am only using the "default settings". What am i doing wrong?