Hacker News new | ask | show | jobs
by bartc 3495 days ago
No, with a packet capture and the private keys from both sides, you would still not be able to identify the master secret negotiated out of the dh key exchange.

However, both sides obviously know the master secret, so if you can extract it from one of the clients then you can use that in wireshark to decrypt the application data packets. In wirshark preferences, this is called the pre-master-secret log filename.