$ dumpcap -w some.pcapng -f "host example.com"
$ SSLKEYLOGFILE=some.keys curl
https://example.com
$ editcap --inject-secrets tls,some.keys some.pcapng some-with-keys.pcapng
Now you can load some-with-keys.pcapng in Wireshark 3.0 or newer without
requiring any further configuration and have its