Ask Your Question

sindy's profile - activity

2020-04-22 17:10:07 +0000 received badge  Famous Question (source)
2020-02-22 15:32:50 +0000 received badge  Famous Question (source)
2019-08-22 09:09:05 +0000 received badge  Popular Question (source)
2019-08-22 09:09:05 +0000 received badge  Notable Question (source)
2019-06-13 10:07:25 +0000 received badge  Taxonomist
2019-05-14 20:24:23 +0000 commented question How to capture real-time data from a COM port, and provide it to Wireshark, using named pipes on Windows 10?

What's worse is that there are some protocol layers to implement between raw serial bytes and frames/packets which Wires

2019-05-14 20:14:18 +0000 received badge  Rapid Responder (source)
2019-05-14 20:14:18 +0000 answered a question Wireshark "hangs" when opening, takes 100 seconds to open

If you have USBPcap installed, I assume you are hit by bug 12845 which has been recently fixed so the development versio

2019-05-05 11:18:30 +0000 commented answer Help with Wireshark Lab

Another possibility could be a disabled http dissector or one of those lower in the hierarchy (tcp, ip, ethernet). Can y

2019-04-25 06:07:18 +0000 commented question In SIP registration regiatrat(S-CSCF) sends remove 1 binding but AS response with 200-OK sends 'removed 2 bindings'.

Use File->Export specified packets to save just the two packets above into a new pcap(ng) file, publish that file som

2019-04-22 19:31:03 +0000 commented answer Packet sniff noise

udp port 37008 is a capture filter, which tells the sniffing engine (WinPcap/npcap) which packets out of those seen on t

2019-04-22 19:30:08 +0000 commented answer Packet sniff noise

udp port 37008 is a capture filter, which tells the sniffing engine (WinPcap/npcap) which packets out of those seen on t

2019-04-17 16:42:12 +0000 edited answer Packet sniff noise

It is rather a question for the Mikrotik forum, however the answer is that you haven't chosen a particular interface to

2019-04-17 16:41:00 +0000 answered a question Packet sniff noise

It is rather a question for the Mikrotik forum, however the answer is that you haven't chosen a particular interface to

2019-04-17 16:41:00 +0000 received badge  Rapid Responder (source)
2019-03-25 11:57:20 +0000 edited answer Every signal strength is 0dbm.

It could be a Wireshark bug, but it is more likely that the wireless hardware or driver does not actually measure the si

2019-03-25 11:56:57 +0000 received badge  Rapid Responder (source)
2019-03-25 11:56:57 +0000 answered a question Every signal strength is 0dbm.

It could be a Wireshark bug, but it is more likely that the wireless hardware or driver does not actually measure the si

2019-03-11 20:26:14 +0000 commented question wireshark voip calls playback

Not enough information. There can be a bug in the VoIP call parser, there can be some kind of non-symmetric codec use wh

2019-02-13 14:11:39 +0000 commented question RTP stream packet loss

In the RTP stream analysis, the line representing every packet whose RTP sequence number is not 1 higher than the one of

2019-02-07 10:14:39 +0000 commented question How can I parse or convert a .pcapng file?

Can you be more specific? The pcapng format is described e.g here, but if you are interested in access to more than time

2019-02-07 10:13:35 +0000 commented question How can I parse or convert a .pcapng file?

Can you be more specific? The pcapng format is described e.g here, but if you are interested in access to more than time

2019-01-30 07:02:47 +0000 received badge  Rapid Responder (source)
2019-01-30 07:02:47 +0000 answered a question How do I get packet for ip renewal of each device in my network?

Check the manual on capture setup. In a switched environment, you can only see frames which the switch delivers to your

2019-01-24 19:52:39 +0000 received badge  Notable Question (source)
2019-01-01 16:25:18 +0000 received badge  Rapid Responder (source)
2019-01-01 16:25:18 +0000 answered a question I have hex dump of LTE signalling messages . How to parse messages, without installing whole Wireshark setup on my machine?

Use cloudshark.

2018-12-09 17:01:39 +0000 commented question how do I stop phone calls

If you mean that these calls arrive directly to your SIP phones, either configure the phones to only accept calls coming

2018-11-29 12:41:45 +0000 commented answer Why my server does not respond to client's [SYN]?

As the TCP session has been successfully established and the server has received data on it, the network layer seems to

2018-11-28 16:07:15 +0000 commented question Datetime in VoIP Call

Have you tried to tick the "Time of Day" option at the right bottom corner of the VoIP Calls window? This window does no

2018-11-28 13:16:26 +0000 answered a question Why my server does not respond to client's [SYN]?

Wireshark tells you what has happened, but rarely why it has happened. So you have seen that the client initiates the se

2018-11-28 13:16:26 +0000 received badge  Rapid Responder (source)
2018-11-01 15:47:32 +0000 received badge  Rapid Responder (source)
2018-11-01 15:47:32 +0000 answered a question How to capture ip address of watsapp number

No way. Even if they wouldn't care about users' privacy, all these services have to use mediation servers for technical

2018-10-21 10:35:37 +0000 commented answer SYN issue, no 3-way handshake

TTL is independent between directions (the IP layer knows nothing about the TCP layer's notion of request and response).

2018-10-20 21:22:25 +0000 edited answer SYN issue, no 3-way handshake

Wireshark shows you exactly what has happened but rarely why it has happened. Here a firewall somewhere close to the ser

2018-10-20 21:21:55 +0000 received badge  Rapid Responder (source)
2018-10-20 21:21:55 +0000 answered a question SYN issue, no 3-way handshake

Wireshark shows you exactly what has happened but rarely why it has happened. Here a firewall somewhere close to the ser

2018-10-20 08:12:32 +0000 commented answer Updating MATE config

Having the field boundaries indicated as first-(last+1) rather than first-last is not usual. So when I saw "34,35,36" fo

2018-10-20 08:10:06 +0000 commented answer Updating MATE config

Having the field boundaries indicated as first-(last+1) rather than first-last is not usual. So when I saw "34,35,36" fo

2018-10-20 08:05:11 +0000 commented answer Updating MATE config

Having the field boundaries indicated as first-(last+1) rather than first-last is not usual. So when I saw "34,35,36" fo

2018-10-20 08:04:24 +0000 commented answer Updating MATE config

Having the field boundaries indicated as first-(last+1) rather than first-last is not usual. So when I saw "34,35,36" fo

2018-10-19 19:53:39 +0000 commented answer Updating MATE config

My excuse for this embarrasing mistake is that I've never managed to cross the barrier of installing the development env

2018-10-16 19:43:04 +0000 edited answer Updating MATE config

My problem is that I don't speak C++ (and I haven't used MATE for at least two years), so I can only surf the surface, b

2018-10-16 19:41:53 +0000 edited answer Updating MATE config

My problem is that I don't speak C++ (and I haven't used MATE for at least two years), so I can only surf the surface, b

2018-10-16 19:40:17 +0000 answered a question Updating MATE config

My problem is that I don't speak C++ (and I haven't used MATE for at least two years), so I can only surf the surface, b

2018-10-15 20:04:34 +0000 commented answer How to add a custom field in Wireshark which is delta of a field in frames

MATE is out of question here. In Lua, you have to build a "table" (array) of the delta values, indexed by frame number,

2018-10-07 17:48:33 +0000 answered a question Capture VOIP traffic to check for packet loss

"VoIP" consists of the call control (or signaling), which in your case is SIP, and the media, which in your case is RTP.

2018-10-01 12:24:45 +0000 commented answer Session Description Protocol. Bandwidth information AS:84. What AS:84 stand for?

The "application" here is most likely the phone or the exchange, but if the SDP is forwarded by a SDP-aware device, it m

2018-10-01 12:14:33 +0000 edited question Session Description Protocol. Bandwidth information AS:84. What AS:84 stand for?

Session Description Protocol. Bandwidth information AS:84. What AS:84 stand for? Hello, I ran a Wireshark for ipphone an