How do I decrypt WPA2 encrypted packets using Wireshark?

Posted by Rox on Super User See other posts from Super User or by Rox
Published on 2012-03-20T21:05:08Z Indexed on 2012/03/20 23:33 UTC
Read the original article Hit count: 335

I am trying to decrypt my WLAN data with Wireshark. I have already read and tried eveything on this page but without any success (well, I tried the example dump on that page and succeeded, but I fail with my own packets).

I caught the four-way handshake from another client connecting to the network.

My network info is as follows:

  • SSID: test
  • Passphrase: mypass
  • The above info would give this preshared key: 58af7d7ce2e11faeab2278a5ef45de4944385f319b52a5b2d82389faedd3f9bf

In Wireshark in the Preferences-->IEEE 802.11 I have set this line as Key 1:

wpa-psk:58af7d7ce2e11faeab2278a5ef45de4944385f319b52a5b2d82389faedd3f9bf

I have tried the different options of "Ignore the protection bit" but none works.

What could I have missed?

© Super User or respective owner

Related posts about wireless-networking

Related posts about wireshark