Ask Your Question

Revision history [back]

Decoding SIP packet containing STIR/SHAKEN certificate

In capturing SIP UDP INVITES that have a STIR/SHAKEN (aka STI-PA) certificate within the packet, Wireshark 4.4.7 labels it as "Fragmented IP protocol" though it is not fragmented (though it does have a length of 1514). I tried doing a "decode as", but there is no SIP option there. Any suggestions on getting wireshark to see it as a SIP INVITE?