Hi,
I’m doing a study project on Voip
security using TLS. We can send H.323 messages in an encrypted TLS tunnel. To
debug these messages we need a plug-in in Wireshark which actually decrypts the
TLS and the tunneled messages. However, I guess it is not so easy to decrypt
the data sent in the TLS tunnel.
I heard that there is Lawful Interception
services with which can get/trace the keys exchanged during TLS handshake and
use the keys for further decryption of data may be by feeding the key to TLS
plug-in or so.
Does Wireshark have support for this kind
of functionality?
Can any one help me in giving more details
and information in this area?
Regards,
Krishna.