Forum Discussion
nathe
Mar 09, 2018Cirrocumulus
Kur,
You're options don't look correct to me. Have you followed this solution: Overview of Packet Tracking with Ssldump? the -r switch reads a file so you don't need to specify the interface or host. If you want to capture/decrypt live traffic then suggest you take a look at this DC article Troubleshooting TLS Problems With ssldump.
My recommendation is to capture the traffic first with tcpdump and use ssldump offline to read the capture. You can use just the -nr switch (+file) to check record messages, but you'll need to provide a key to decrypt the application traffic.
Hope this helps,
N