MIM not possible against secure (ie most) SSL
Even with SSL support in the code, it is not possible to crack SSL encrypted links. To complete an SSL
handshake you must know the secret key for the certificate that you supply. If Ettercap supplies the server's
certificate to the client, it will not be able to complete the handshake. If it supplies its own certificate,
the client will see that the certificate is not the one expected.
So the only hope this has of working is if certificates are not checked, which is only likely if people use ssh
insecurely. It will not work for browser connections because the browser itself checks the certificate for the site
name (and to fool that you have to persuade Verisign or similar to sign a certificate that says, for example, that
you are amazon.com - not likely).
Given all that, aren't you misprepesenting the abilities of this tool?
[Apologies, I'm using an anon acct for obvious reasons]