{"id":3679,"date":"2016-02-02T22:18:55","date_gmt":"2016-02-02T20:18:55","guid":{"rendered":"http:\/\/www.laurentmarot.fr\/wordpress\/?p=3679"},"modified":"2016-02-03T09:25:05","modified_gmt":"2016-02-03T07:25:05","slug":"debug-ton-https-avec-wireshark","status":"publish","type":"post","link":"https:\/\/www.laurentmarot.fr\/wordpress\/?p=3679","title":{"rendered":"D\u00e9bug ton HTTPS avec Wireshark"},"content":{"rendered":"<p>Vous aussi vous avez eu besoin d&rsquo;aller <strong>d\u00e9chiffrer un flux HTTPs pour un coup de d\u00e9bug<\/strong> ?<br \/>\nCa n&rsquo;a jamais \u00e9t\u00e9 aussi facile.<br \/> M\u00eame plus besoin d&rsquo;aller <em>\u00ab\u00a0emprunter\u00a0\u00bb<\/em> une clef priv\u00e9e sur un serveur ou de se mettre dans la peau de <em>\u00ab\u00a0l&rsquo;homme du milieu\u00a0\u00bb<\/em> (souvenirs de gal\u00e8res avec sslstrip or mitmproxy).<\/p>\n<p><strong>1 &#8211;<\/strong> Tu d\u00e9finis ta variable d&rsquo;environnement SSLKEYLOGFILE pointant sur un fichier local que Firefox\/Chrome d\u00e9tectera au red\u00e9marrage et qui va servir \u00e0 stocker les pre-master keys<\/p>\n<p><strong>2 &#8211;<\/strong> Tu renseignes le chemin vers ce fichier de stockage des pre-master keys dans les pr\u00e9f\u00e9rences SSL de Wireshark<\/p>\n<p><strong>3 &#8211;<\/strong> Tu ajoutes ton filtre Wireshark de capture entre ton poste et le serveur cible<\/p>\n<p><code>ip host 87.98.170.232 and ip host 192.168.1.102<\/code><\/p>\n<p><strong>4 &#8211;<\/strong> Feu patate !<br \/>\n<div id=\"attachment_3680\" style=\"width: 310px\" class=\"wp-caption aligncenter\"><a href=\"http:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk.png\"  rel=\"lightbox[3679] attachment wp-att-3680\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-3680\" src=\"http:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk-300x199.png\" alt=\"Toi aussi rigole avec Wireshark\" width=\"300\" height=\"199\" class=\"size-medium wp-image-3680\" srcset=\"https:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk-300x199.png 300w, https:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk-768x510.png 768w, https:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk-1024x680.png 1024w, https:\/\/www.laurentmarot.fr\/wordpress\/wp-content\/uploads\/2016\/02\/wiresharkk.png 1659w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a><p id=\"caption-attachment-3680\" class=\"wp-caption-text\">Toi aussi rigole avec Wireshark<\/p><\/div><br \/>\nMerci qui ? Merci <a href=\"https:\/\/jimshaver.net\/2015\/02\/11\/decrypting-tls-browser-traffic-with-wireshark-the-easy-way\/\">Jim<\/a> !<\/p>\n<p>Ah oui, il faudra quand m\u00eame que je regarde les cas o\u00f9 cela ne fonctionne pas &#8230; et que je d\u00e9taille dans ce cas les vieilles alternatives.<\/p>\n\n","protected":false},"excerpt":{"rendered":"<p>Vous aussi vous avez eu besoin d&rsquo;aller d\u00e9chiffrer un flux HTTPs pour un coup de d\u00e9bug ? Ca n&rsquo;a jamais \u00e9t\u00e9 aussi facile. M\u00eame plus besoin d&rsquo;aller \u00ab\u00a0emprunter\u00a0\u00bb une clef priv\u00e9e sur un serveur ou de se mettre dans la peau de \u00ab\u00a0l&rsquo;homme du milieu\u00a0\u00bb (souvenirs de gal\u00e8res avec sslstrip or mitmproxy). 1 &#8211; Tu [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20,39,51,58],"tags":[],"_links":{"self":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/3679"}],"collection":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=3679"}],"version-history":[{"count":13,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/3679\/revisions"}],"predecessor-version":[{"id":3693,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=\/wp\/v2\/posts\/3679\/revisions\/3693"}],"wp:attachment":[{"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=3679"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=3679"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.laurentmarot.fr\/wordpress\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=3679"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}