AdguardTeam / AdguardTeam/CoreLibs

Decrypt TLS traffic using sslkeylogfile

Open
#1,654 2 comments 0 reactions 0 assignees View on GitHub
Feature request needs tech clarification Priority: P4
Dominant language
No language data
Stars
52
Forks
10
PR merge metrics
No merged PRs in 30d

Description

The current act of installing a CA certificate to decrypt TLS traffic breaks the original certificate chain. `sslkeylogfile` avoids this broken certificate chain.
Wireshark also uses `sslkeylogfile` to decrypt TLS traffic.

FYI:
https://wiki.wireshark.org/TLS#tls-decryption
https://firefox-source-docs.mozilla.org/security/nss/legacy/key_log_format/index.html

### Your environment
* AdGuard 7.9.1 (build 3869, CL 1.9.43)

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.