Ask Your Question

Revision history [back]

Tshark not decoding f1ap_f1ap_RRCContainer

We want to use the Tshark to convert the existing Pcap file into the ELK json file. Our PCAP file contains the dump of 5G F1AP/NGAP messages. In the output json file, all the messages are decoded fully except where the field is f1ap_f1ap_RRCContainer. This field value is still in hexstring format. Can someone help in how to decode this with tshark?