Unencrypted text file contents

How to figure out unencrypted text file contents in wireshark ?

check each packet one by one you will find one with bigger length and in the bottom most column text file contents will be visible

I think that’s how its supposed to be since the stream will be encrypted by ssl/tls

There are so many packets in the wireshark, do i need to add any filter ?

Yes you can add filters to see the packets that you desire. Study about TCP flags to do this.

this might help you… go through all the replies there, you can find some useful hints