How to DECRYPT HTTPS Traffic with Wireshark @ChrisGreer
How to DECRYPT HTTPS Traffic with Wireshark  @ChrisGreer
Uploaded February 2021 | Updated September 2026, 1 day ago
In this tutorial, we are going to capture the client side session keys by setting an environment variable in Windows, then feed them to Wireshark for TLS 1.3 decryption.

Follow along with me by downloading the trace file and keylog file here:
bit.ly/tlsdecrypt

Steps to capture client session key:
Open Control Panel:System
Select Advanced System Settings
Select Environment Variables
Add a new variable: SSLKEYLOG
Save to a location with a name ending in *.log
Restart Chrome (You may have to reboot Windows in some cases)
Capture Traffic
Add the keylog file to the TLS Protocol in Wireshark Preferences.

If you liked this video, I’d really appreciate you giving me a like and subscribing, it helps me a whole lot. Also don't be shy, chat it up in the comments!

== More On-Demand Training from Chris ==
▶Wireshark Certified Analyst - The Complete Course - bit.ly/wiresharkcert
▶Getting Started with Wireshark - bit.ly/udemywireshark
▶Getting Started with Nmap - bit.ly/udemynmap

== Private Wireshark Training ==
Let's get in touch - packetpioneer.com/custom-training-request
How to DECRYPT HTTPS Traffic with WiresharkWatch what you type!! Or they will...DNS is Finally Encrypted - Here is Proof...Introduction to Wireshark - Sharkfest TalksTop 10 Wireshark Filters // Filtering with WiresharkCan DeepSeek R1 Find the Username and Password? Lets find out!DNS Isn’t Just UDP — And This Is Why It MattersCheck out this button!Quick Tip - Analyzing Endpoints in Wireshark3 Things to Look For in EVERY TCP HandshakeHow TCP Works - Bytes in FlightHow TCP Sequence Numbers Work - TCP Deep Dive // Hands-On Case Study
Chris Greer |

How to DECRYPT HTTPS Traffic with Wireshark

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER