Ask Your Question

Revision history [back]

click to hide/show revision 1
initial version

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic captures compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all traffic that did not come from access switch. So, is there a way to create Display/BPF Filters that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see conversations that show up in both files?

Thank you!

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic captures compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all traffic that did not come from access switch. switch.

So, is there a way to create a Display/BPF Filters Filter that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see conversations that show up in both files?

Thank you!

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic captures traffic, compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all traffic that did not come from access switch.

So, is there a way to create a Display/BPF Filter that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see conversations that show up in both files?

Thank you!

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic, compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all traffic the conversations that did not come source from access switch.

So, is there a way to create a Display/BPF Filter that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see conversations that show up in both files?

Thank you!

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic, compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all the conversations that did not source from access switch.

So, is there a way to create a Display/BPF Filter that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see common conversations that show up in both files?

Thank you!

Multi-Point capture - Generate filter from conversations in PCAP

Hello Wireshark-Community, we have two capture points in the network. At Access-SW + WAN-Edge to figure out if there is packet loss inside LAN. At Access there was of course much less traffic, compared to WAN edge where everything aggregates. Now, on WAN-Edge-Capture I want to filter out all the conversations that did not source from access switch.

So, is there a way to create generate a Display/BPF Filter that only contains IP conversations from Access-SW capture file to that I can apply this filter to WAN-Edge capture file? I hope you understand my goal to only see common conversations that show up in both files?

Thank you!