Sign inSign up

tungns1207/masque-proxy

By tungns1207

•Updated 11 months ago

Image
Networking
0

118

tungns1207/masque-proxy repository overview

⁠Masque-Plus Traffic Analyzer

A specialized Docker environment for analyzing, capturing, and decrypting MASQUE/QUIC protocol traffic.

This image comes pre-installed with Masque-Plus⁠, usque, tcpdump, and network utilities. It is configured to automatically export TLS Master Secrets, allowing for full decryption of QUIC traffic in Wireshark.

⁠Image Features

  • Core Tools: Includes build of masque-plus and usque.
  • Network Analysis: Pre-configured with tcpdump and curl.
  • TLS Decryption: handles SSLKEYLOGFILE export for Wireshark analysis.
  • Base OS: Built on Ubuntu 24.04 with updated CA Certificates.

⁠Pull the images

docker pull tungns1207/masque-proxy

ā šŸš€ Quick Start

To start the container and mount your current directory to save capture files:

docker run --rm -it -p 1080:1080 -v "$(pwd):/data" --name masque-dump tungns1207/masque-dump:latest

šŸ“– Usage Scenarios

Use this method to route your computer's browser traffic through the container.

Start the container using the command

docker run --rm -it -v "$(pwd):/data" --name masque-dump tungns1207/masque-dump:latest

Inside the container, run the tcpdump to capture and write to /data/capture.pcap:

tcpdump -i eth0 -w /data/capture.pcap

Set the TLS Key log path and run the masque-plus:

docker exec -it masque-dump bash
export SSLKEYLOGFILE=/data/TLS_keys.log
./masque-plus --endpoint 162.159.198.2:443

⁠Method 2: Internal Testing

Use this method to generate traffic using curl inside the container.

Start the container using the command

docker run --rm -it -p 1080:1080 -v "$(pwd):/data" --name masque-dump tungns1207/masque-dump:latest

Start capture

tcpdump -i eth0 -w /data/capture.pcap

Set the TLS Key log path and run the masque-plus:

docker exec -it masque-dump bash
export SSLKEYLOGFILE=/data/TLS_keys.log
./masque-plus --endpoint 162.159.198.2:443

Generate traffic using curl:

curl -x socks5h://127.0.0.1:1080 https://www.google.com
curl -x socks5h://127.0.0.1:1080 https://ifconfig.me

Tag summary

Content type

Image

Digest

sha256:c1af23e57…

Size

92.5 MB

Last updated

11 months ago

docker pull tungns1207/masque-proxy