Ask Your Question
RSS
Sort by » date activity answers ▲ votes

194 questions

Tagged
  • ×
232
views
1
answer
no
votes
2019-08-15 14:04:53 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

tcp.nxtseq not incremented on zero len SYN/FIN packets

126
views
1
answer
no
votes
2019-08-21 22:02:44 +0000 Jaap flag of Netherlands

Dissect tcp packet with 0 length

97
views
1
answer
no
votes
2019-08-30 17:49:32 +0000 Jaap flag of Netherlands

col_set_time(...) in custom dissector not working

216
views
1
answer
no
votes
2019-09-04 19:11:46 +0000 Guy Harris

Extend the Homeplug AV protocol

729
views
1
answer
no
votes
2019-09-21 15:41:56 +0000 BMWE flag of Israel

LUA wireshark dissector - combine data from 2 UDP packets

225
views
1
answer
no
votes
2019-10-07 15:41:40 +0000 doobop

Lua - Get string for a ProtoField that uses a lookup table

110
views
1
answer
no
votes
2019-11-06 10:20:05 +0000 Jaap flag of Netherlands

mark part of packet as higher level protocol

237
views
1
answer
no
votes
2019-11-18 07:43:03 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

How to find mapping for dissector?

100
views
1
answer
no
votes
2019-12-12 02:44:54 +0000 cmaynard flag of United States of America

dissector packet-nvme-tcp not showing up

1k
views
1
answer
no
votes
2020-02-11 20:41:05 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

Adding a custom dissector to wireshark

189
views
1
answer
no
votes
2020-02-16 18:04:32 +0000 Lekensteyn

Lua dissector, loop vs table, what is supported?

143
views
1
answer
no
votes
2020-05-01 08:22:45 +0000 legrandnono

802.11 lua dissector

56
views
1
answer
no
votes
2020-04-23 21:29:23 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

proto_tree_add_format_text in plugins

127
views
1
answer
no
votes
2020-04-26 15:57:16 +0000 yaroni

Add input parameter to tshark/sharkd

104
views
1
answer
no
votes
2020-05-15 20:07:48 +0000 Guy Harris

Dissector that decodes payload on another layer

109
views
1
answer
no
votes
2020-05-28 15:52:48 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

Is it possible to directly dissect a hex data instead of a packet?

142
views
1
answer
no
votes
2020-05-28 18:36:27 +0000 Guy Harris

How to use custom protocol with text2pcap?

94
views
1
answer
no
votes
2020-06-12 11:10:42 +0000 Anders flag of Sweden

How does Wireshark recognize QUIC packets

291
views
1
answer
no
votes
2020-06-18 21:40:47 +0000 Jaap flag of Netherlands

Using SLL dissector output in own dissector?

79
views
1
answer
no
votes
2020-06-20 08:24:46 +0000 Jaap flag of Netherlands

Can I submit a Lua dissector to code review?

457
views
1
answer
no
votes
2020-06-30 14:20:09 +0000 Anders flag of Sweden

Decoding payload as ASN.1 DER/BER

65
views
1
answer
no
votes
2020-07-09 12:41:24 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

unregister the dissector/protocol to build tshark

55
views
1
answer
no
votes
2020-07-09 16:27:43 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

Dissector stability guarantees

55
views
1
answer
no
votes
2020-07-13 12:49:32 +0000 grahamb flag of United Kingdom of Great Britain and Northern Ireland

Inconsistent g_snprintf behaviour (Wireshark 3.2.5)

63
views
1
answer
no
votes
2020-07-22 17:31:02 +0000 ranjeetsih

Cannot call pppoed and pppoes dissector from lua plugin

ASK YOUR QUESTION

Save the dates! SharkFest ’21 Virtual Europe will be held June 14-18, 2021 and Sharkfest ’21 Virtual US will be held September 13-17, 2021. Meanwhile, don’t forget that you can always find great content still available from past conferences at the Sharkfest US, Sharkfest Europe, and Sharkfest Asia Retrospective pages too!

Ask and answer questions about Wireshark, protocols, and Wireshark development.

Older questions and answers from October 2017 and earlier can be found at osqa-ask.wireshark.org.

Tag search

Don't have Wireshark?

What are you waiting for? It's free! Wireshark documentation and downloads can be found at the Wireshark web site.