Hello, I have pcap created on an F5 device, with --f5 tls option. I extracted the pms using tshark command, but then when I load it into wireshark, it does not seem to decrypt traffic. What's odd is that F5 support engineer tells me it works fine for him, using the same pcap file I have sent him, and the same latest wireshark version as I am!
The tls log contains the following... any idea what could be wrong with my setup?
https://gist.github.com/lrhazi/03cce9082f3d6a4ce8c1d337d3f3eaa0