[strongSwan] How to find encryption key for ikev1

Yogesh Purohit yogeshpurohit2 at gmail.com
Thu Jul 16 07:02:25 CEST 2020


Hi,

I was intending to decrypt isakmp packets for ike version 1 using wireshark.
In wireshark it needs the Initiator cookie and encryption key to decrypt
the packets.

I have enabled debug logs by adding: enc = 3 in strongswan.conf file.
I followed this link
https://osqa-ask.wireshark.org/questions/12019/how-can-i-decrypt-ikev1-andor-esp-packets

But this was used when strongswan used Pluto daemon but now Charon is being
used.

So how to identify the initiator cookie and encryption key from logs for
ike version 1.

Thanks

-- 
Best Regards,

Yogesh Purohit
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20200716/e3b3fa7f/attachment-0001.html>


More information about the Users mailing list