Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 14 Jan 2005 14:07:09 +0000
From:      Bruce M Simpson <bms@spc.org>
To:        Andriy Gapon <avg@icyb.net.ua>
Cc:        freebsd-security@freebsd.org
Subject:   Re: debugging encrypted part of isakmp
Message-ID:  <20050114140709.GD57985@empiric.icir.org>
In-Reply-To: <41E796DC.2090102@icyb.net.ua>
References:  <41E796DC.2090102@icyb.net.ua>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Jan 14, 2005 at 11:54:36AM +0200, Andriy Gapon wrote:
> Are there any tools to decode encrypted part of isakmp provided that
> identities of both peers are known to me and that I am able to observe
> the whole exchange ?

man 8 isakmpd:

%%%
     -L      Enable IKE packet capture.  When this option is given, isakmpd
             will capture to file an unencrypted copy of the negotiation pack-
             ets it is sending and receiveing.  This file can later be read by
             tcpdump(8) and other utilities using pcap(3).
%%%

Regards,
BMS



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050114140709.GD57985>