> Perhaps a possibility would be "application/tls-record"? This is similar to > how "application/dns-message" is defined in [RFC 8484 section 6]
Yes, that seems reasonable. Your registration should point out that the content might not be decodable without external information, and that in at least one use-case (yours), a collection of records will not necessarily cover the entire message stream. You might also want to reach out to the wireshark folks and see what they think. _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls