A
A
alphatom2021-02-07 17:45:18
Traffic analysis
alphatom, 2021-02-07 17:45:18

Library for parsing tcpdump in realtime with the ability to decrypt SSL?

I'm looking for a library or program to analyze network traffic in real time. Interested in HTTP/HTTPS messages. Ability to decrypt SLL traffic using SSLKEYLOGFILE.

I tried writing tcpdump to .pcap and reading it with python under MacOS, I tried several libraries to parse pcap - but they have some difficulties with recognizing packets - everything is marked as Other (tried scapy, dpkt).

Proxy server with its own certificate is not suitable, since there is no way to configure it correctly in the system.

Answer the question

In order to leave comments, you need to log in

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question