Ask Your Question

Revision history [back]

Version 3.0.6 -e data.data no colon separator

Hello everyone, i am working on extracting tcp packets from a pcap file. I've been using 2.2.6 version of wireshark and have always retrieved the packet data using -e data.data using tshark command.

To my surprise when i upgraded to 3.0.6 the packets are now not separated by colon.

Do i need to set something in wireshark for the colons to appear or to is there another command i need to add in my script?

i'm a 2 week old user and started in 2.2.6 your help is highly appreciated!