Export to text with tshark
Hi guys, how can I export with tshark to text with all the Packet details expanded?
Prtscr of how I do it in Wireshark. http://ibb.co/k2Qp00q
Hi guys, how can I export with tshark to text with all the Packet details expanded?
Prtscr of how I do it in Wireshark. http://ibb.co/k2Qp00q
From the tshark Man Page (and as output by tshark -h):
-V Cause TShark to print a view of the packet details.
There's quite a bit more about controlling output in the Man page.
Please start posting anonymously - your entry will be published after you log in or create a new account.
Asked: 2019-05-21 15:15:16 +0000
Seen: 970 times
Last updated: May 21 '19
It looks like tshark can't read the disection:
Unknown - aborting dissection Extraneous Data
GSM A-I/F DTAP - Identity Response Protocol Discriminator: Mobility Management messages .... 0101 = Protocol discriminator: Mobility Management messages (0x05) 0000 .... = Skip Indicator: 0 10.. .... = Sequence number: 2 ..01 1001 = DTAP Mobility Management Message Type: Identity Response (0x19) Unknown - aborting dissection Extraneous Data
Arrrrrgh, after upgrade the tshark output is identitcal.