How can I capture the communication between Windows 11 and global network

47 views
Skip to first unread message

押方智裕

unread,
Dec 27, 2024, 10:15:23 PM12/27/24
to ZAP User Group
Hi, @all,

I just start using OWASP ZAP. I'm learning how to use this tool.
I have two windows 11 PCs. One is desktop, another one is laptop.
Yesterday, I installed OWASP ZAP on my desktop. Then, I want to listen the communication between the laptop and external servers.
I configured the HTT proxy of ZAP. But laptop can't connect to ZAP that has been installed on the desktop.
I checked many sites to fix this issue and I also asked to Google Gemini. But I have not been able to solve this problem.
Both PC has Norton but now smart firewall is enabled in both PCs.

If you can provide any support, it would be very appreciated.

Thanks,
Oshikata

Tomohiro Oshikata

unread,
Dec 30, 2024, 4:24:31 AM12/30/24
to ZAP User Group
I haven't successfully connect from client (my laptop) to external site via ZAP (my desktop).
I checked the certification, proxy configuration again and again.
I re-installed OWASP ZAP but I can't resolve the issue. How can you scan the network traffic with OWASP ZAP.
I'm trying to access to OWASP Juice Shop from my client. If I don't use the proxy, I can access to the Juice Shop successfully.
But when I use the ZAP (proxy), I got the error ERR_CONNECTION_CLOSED.
I installed proxy switcher to the client. This tool is useful to switch the proxy server. Is it the wrong part of my trial?
If you have any idea, please share it with me. Any suggestion would be appreciated.

2024年12月28日土曜日 12:15:23 UTC+9 Tomohiro Oshikata:

Simon Bennetts

unread,
Dec 30, 2024, 5:03:46 AM12/30/24
to ZAP User Group
Hiya,

Try launching a browser (Firefox or Chrome) from ZAP, e.g. via the Manual Explore tab.
ZAP should configure any browsers it launches to correctly proxy through ZAP.

BTW ZAP has not been an OWASP project for well over a year.

Cheers,

Simon

Tomohiro Oshikata

unread,
Dec 30, 2024, 11:36:37 PM12/30/24
to ZAP User Group
Simon san,

Thank you for your help. I will try it.
You mentioned that I should boot the browser from ZAP.
I think it means client and proxy should be hosted on the same machine.
Can we host the proxy and client on the separate machine?

I didn't know that the ZAP has not been an OWASP.

Thanks,
Oshikata

2024年12月30日月曜日 19:03:46 UTC+9 psi...@gmail.com:

kingthorin+zap

unread,
Dec 31, 2024, 8:38:10 AM12/31/24
to ZAP User Group
Yes you can host ZAP on another machine and set your browsers' proxy settings to be that machine. You will need to have ZAP listening on an interface (not loopback) and ensure your Firewall(s) aren't blocking access to ZAP's port.

Also note, ZAP isn't mean to be a long running service.
Reply all
Reply to author
Forward
0 new messages