Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

What does the protected flag do?

Using the same method, I've been able to decrypt monitor mode captures from some networks, but not others. What can cause this and is it possible to work around these cause(s)?

I have successfully decrypted multiple captures from network A. I've decrypted them by providing the PSK (either in the 256-bit variety, generated here or the raw password).

However, when I try the same thing using captures from network B, I'm unable to see anything higher level than 802.11. In this later case I have captured the EAPOL handshake and definitely provided the correct passcode

What else can I do to decrypt (or to debug?).

I am using Wireshark 2.4.4 on OS X High Sierra.

What does the protected flag do?

Using the same method, I've been able to decrypt monitor mode captures from some networks, but not others. What can cause this and is it possible to work around these cause(s)?

I have successfully decrypted multiple captures from network A. I've decrypted them by providing the PSK (either in the 256-bit variety, generated here or the raw password).

However, when I try the same thing using captures from network B, I'm unable to see anything higher level than 802.11. In this later case I have captured the EAPOL handshake and definitely provided the correct passcode

What else can I do to decrypt (or to debug?).

I am using Wireshark 2.4.4 on OS X High Sierra.

What does the protected flag do?Can't decrypt WPA-PSK (WPA/WPA2) even with passphrase and EAPOL Handshake

Using the same method, I've been able to decrypt monitor mode captures from some networks, but not others. What can cause this and is it possible to work around these cause(s)?

I have successfully decrypted multiple captures from network A. I've decrypted them by providing the PSK (either in the 256-bit variety, generated here or the raw password).

However, when I try the same thing using captures from network B, I'm unable to see anything higher level than 802.11. In this later case I have captured the EAPOL handshake and definitely provided the correct passcode

What else can I do to decrypt (or to debug?).

I am using Wireshark 2.4.4 on OS X High Sierra.