How to decrypt RADIUS traffic using Wireshark with RSA Authentication Manager
Originally Published: 2017-05-19
Article Number
Applies To
RSA Product/ Service Type: Authentication Manager
RSA Version/Condition: 7.x, 8.1, 8.0, 8.1
Issue
Resolution
You can follow the below steps to be able to decrypt the Radius Packets:
- Capture RADIUS authentication traffic. See 000016395 - TCPDump for the Authentication Manager Appliance 8.x for more information.
- Launch the Wireshark app.
- Open the capture of of the RADIUS traffic, typically in .pcap format.
- Go to Edit > Preferences.
- Click the + next to Protocols to expand the tree.
- Scroll down and select RADIUS.
- Key in the RADIUS shared secret and click Apply.
- The passcode in clear text.
The packet capture before entering the RADIUS shared secret:
The packet capture after entering the RADIUS shared secret:
Related Articles
RSA Authentication Manager 8.x fails to process RADIUS authentication requests from NPS 34Number of Views RSA Authentication Manager 8.4 Patch 11 Readme 13Number of Views aservers occasionally are unable to decrypt tokens from other aservers. 21Number of Views Error "System was modified beyond the allowed threshold, cannot decrypt" on RSA Authentication Manager 8.x 325Number of Views RSA Authentication Manager 8.4 Patch 14 Readme 25Number of Views
Trending Articles
Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Release Notes for RSA Authentication Manager 8.8 RSA Authentication Manager 8.9 Release Notes (January 2026) Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA SecurID Software Token 5.0.2 for Windows Desktop displays message after reboot due to roaming profile: No token stor…
Don't see what you're looking for?