Wireshark-users: [Wireshark-users] Annoying decrypting
From: Marc Quibell <Marc.Quibell@xxxxxxxxxxxxxxxx>
Date: Tue, 11 Mar 2008 10:56:12 -0500

I keep getting these messages in the debug file when trying to decrypt SSL traffic:

decrypt_ssl3_record: using server decoder
decrypt_ssl3_record: no decoder available

I've searched all over the 'net and there's no answer for this. No decoder available? What does that mean?

Here's my first relative debug entry:

ssl_init keys string:
127.0.0.1,9443,ssl,E:\SSL_monitoring\key-cleartext.pem;192.168.122.9,9443,ssl,E:\SSL_monitoring\key-cleartext.pem;172.24.2.31,9443,ssl,E:\SSL_monitoring\key-cleartext.pem;
ssl_init found host entry 127.0.0.1,9443,ssl,E:\SSL_monitoring\key-cleartext.pem
ssl_init addr 127.0.0.1 port 9443 filename E:\SSL_monitoring\key-cleartext.pem
ssl_init private key file E:\SSL_monitoring\key-cleartext.pem successfully loaded
association_add TCP port 9443 protocol ssl handle 02B68AE8
ssl_init found host entry 192.168.122.9,9443,ssl,E:\SSL_monitoring\key-cleartext.pem
ssl_init addr 192.168.122.9 port 9443 filename E:\SSL_monitoring\key-cleartext.pem
ssl_init private key file E:\SSL_monitoring\key-cleartext.pem successfully loaded
association_add TCP port 9443 protocol ssl handle 02B68AE8
ssl_init found host entry 172.24.2.31,9443,ssl,E:\SSL_monitoring\key-cleartext.pem
ssl_init addr 172.24.2.31 port 9443 filename E:\SSL_monitoring\key-cleartext.pem
ssl_init private key file E:\SSL_monitoring\key-cleartext.pem successfully loaded
association_add TCP port 9443 protocol ssl handle 02B68AE8
ssl_init found host entry
ssl_init entry malformed can't find port in ''
association_find: TCP port 443 found 02C31788
ssl_association_remove removing TCP 443 - http handle 0272EC80
association_add TCP port 443 protocol http handle 0272EC80
association_find: TCP port 636 found 02C31870
ssl_association_remove removing TCP 636 - ldap handle 02378598
association_add TCP port 636 protocol ldap handle 02378598
association_find: TCP port 993 found 02C31D08
ssl_association_remove removing TCP 993 - imap handle 026FEFE0
association_add TCP port 993 protocol imap handle 026FEFE0
association_find: TCP port 995 found 02C32050
ssl_association_remove removing TCP 995 - pop handle 02760FA0
association_add TCP port 995 protocol pop handle 02760FA0

TIA!

__________________________________________
The information contained in this message may be privileged and confidential and protected from disclosure. If you are not the intended recipient of this message, you are hereby notified that any dissemination, distribution, or copying of this communication is strictly prohibited. If you have received this communication in error, please notify us immediately by replying to the message, and please delete it from your computer.