[Openswan Users] Decrypt ESP packets with wireshark for tunnel mode (Openswan)

Paul Wouters paul at xelerance.com
Fri Nov 12 17:02:03 EST 2010


On Fri, 12 Nov 2010, Michael Richardson wrote:

> The reasons, btw, for Perfect Forward Secrecy, is so that when such a
> thing as the keys are disclosed as above, that the disclosure only
> reveals one period of traffic, not all traffic that follows.

And all captured traffic of the past....

Paul


More information about the Users mailing list