Hello - I received a trace from an outside source. When I opened it up I used the Decode As feature. As a result all the traffic was interpreted as Docsis which was fine since it was coming off a cable modem infrastructure. However, my problem now is that no matter what I capture is now always interpreted as Docsis which is nonsense. The question is how can I make my Wireshark installation revert back to normal?
asked 06 Feb '12, 09:24
Using the same Decode As dialog that you originally used, click the Clear button.
Using menu Analyze > User Specified Decodes... > Clear. This wipes out all Decode As settings.
(works as of Wireshark 1.7.0)
answered 06 Feb '12, 09:33