Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

capture ntlm traffic


I searched internet but could not find clear example on how to capture and decode NTLM traffic

I set up capture filter as - src or dst port 135

how traffic displayed as TCP and could not find NTLMSSP as option to decode

is there a way? or some other option/step?