Ask Your Question

pac122's profile - activity

2024-03-13 07:39:41 +0000 received badge  Popular Question (source)
2023-12-03 21:11:14 +0000 received badge  Popular Question (source)
2023-05-18 15:12:34 +0000 asked a question How to save "Decode As" into .pcapng file?

How to save "Decode As" into .pcapng file? I am using the latest Wireshark from master repository on Ubuntu 23.04. I tes

2023-05-02 07:40:07 +0000 received badge  Notable Question (source)
2023-05-02 07:40:07 +0000 received badge  Popular Question (source)
2023-04-27 16:50:53 +0000 marked best answer How to dismiss "No packets captured" dialog?

When I capture packets in Wireshark, few of the times no packet are captured. If in this case I click on "Stop capturing packets" the following dialog opens:

image description

Is there some option to set this dialog to not appear in the future. I know no packet were captured, because I see no packets. It is little bit annoying to need to click on OK button.

2023-04-27 12:40:20 +0000 asked a question How to dismiss "No packets captured" dialog?

How to dismiss "No package captured" dialog? When I capture packets in Wireshark, few of the times no packet are capture

2023-04-27 09:43:43 +0000 asked a question Why are there three Wireshark Windows builds in gitlab?

Why are there three Wireshark Windows builds in gitlab? I am browsing through gitlab artifacts and I see there are tree

2023-04-26 13:15:55 +0000 received badge  Popular Question (source)
2023-04-24 07:32:10 +0000 commented answer How to fullfill GPLv2 license when distributing Plugins?

From your question is not clear what kind of license would you like to apply to your plugin. Would you like to apply GPL

2023-04-24 07:06:18 +0000 answered a question How to write capture filter with offset setting?

I have investigated more in deep for this problem. The major problem is DRDA protocol is much more complicated and does

2023-04-22 08:53:45 +0000 received badge  Popular Question (source)
2023-04-21 04:56:09 +0000 marked best answer Wireshark roadmap - when will be next major release?

I have checked the Wireshark Roadmap and there is info about Wireshark next minor release 4.0.6 at the moment.

  1. I see some interesting fixes in master repository landed in last few weeks about DRDA protocol. I am just curious when Wireshark next major release is released? The code that is for example today in master branch (but no in any other like 4.0 branch).

  2. Is there some general roadmap about Wireshark next major version releases? Like ones per year every e.g. December or something.

  3. This is not related to roadmap... I don't really know what is architecture of Wireshark. If there is some fix in some protocol e.g. DRDA and fix is visible in Wireshark GUI, is the same fix also applicable to tshark? Do Wireshark GUI and tshark use the same dissection libraries? I often use display filters in tshark to save output to CSV format and tshark has the same problems in DRDA protocol that are in Wireshark GUI.

2023-04-21 04:56:09 +0000 received badge  Scholar (source)
2023-04-20 12:43:27 +0000 asked a question Wireshark roadmap - when will be next major release?

Wireshark roadmap - when will be next major release? I have checked the Wireshark Roadmap and there is info about Wiresh

2023-04-15 16:28:52 +0000 edited answer How to redact some information in packets

I have done the following: Open .pcapng file in Wireshark and in Packet Details right click on password I needed to ch

2023-04-15 16:27:51 +0000 received badge  Rapid Responder (source)
2023-04-15 16:27:51 +0000 answered a question How to redact some information in packets

I have done the following: 1. Open .pcapng file in Wireshark and in Packet Details right click on password I needed to c

2023-04-15 15:19:46 +0000 received badge  Notable Question (source)
2023-04-15 07:54:05 +0000 commented answer How to redact some information in packets

I have now edited my post. I have found old video with Wireshark edit package experimental feature. Is this feature stil

2023-04-15 07:53:05 +0000 edited question How to redact some information in packets

How to redact some information in packets In Wireshark 4.0.5 I have captured some problem with login into server and sav

2023-04-14 16:58:34 +0000 asked a question How to redact some info in one of the packets?

How to redact some info in one of the packets? In Wireshark 4.0.5 I have captured some problem with login into server an

2023-04-14 16:57:13 +0000 asked a question How to redact some information in packets

How to redact some information in packets In Wireshark 4.0.5 I have captured some problem with login into server and sav

2023-04-14 07:08:47 +0000 edited question How to write capture filter with offset setting?

How to write capture filter with offset setting? In Wireshark 4.0.5 inside DRDA protocol I would like to capture only DR

2023-04-14 07:07:36 +0000 edited question How to write capture filter with offset setting?

How to write capture filter with offset setting? In Wireshark 4.0.5 inside DRDA protocol I would like to capture only DR

2023-04-14 07:07:12 +0000 edited question How to write capture filter with offset setting?

How to write capture filter with offset setting? In Wireshark 4.0.5 inside DRDA protocol I would like to capture only DR

2023-04-14 07:06:13 +0000 asked a question How to write capture filter with offset setting?

How to write capture filter with offset setting? In Wireshark 4.0.5 inside DRDA protocol I would like to capture only DR

2023-04-11 05:46:11 +0000 commented answer How to write filter in tshark to get only data I need?

Yes, parameters are always part of SECMEC (0x11a2). No, order of parameters RDBNAM (0x2110), USRID (0x11a0), PASSWORD (0

2023-04-09 05:40:38 +0000 received badge  Popular Question (source)
2023-04-06 07:01:35 +0000 commented answer How to write filter in tshark to get only data I need?

I checked the DRDA sample from Wireshark samples and I see you have one entry too much in output. In this case in TCP pa

2023-04-06 07:00:47 +0000 commented answer How to write filter in tshark to get only data I need?

I checked the DRDA sample from Wireshark samples and I see you have one entry too much in output. In this case in TCP pa

2023-04-05 16:26:53 +0000 commented answer How to write filter in tshark to get only data I need?

If I understand correctly #N syntax e.g. #2 should display second occurrence if there are multiple options. I have capt

2023-04-05 13:19:54 +0000 edited answer In Tshark's JSON output, why are fields single-value arrays?

Parameters "eth.dst, ip.src, ip.dst and ip.proto" are captured at IP packet level. You have one single IP packet capture

2023-04-05 13:19:39 +0000 edited answer In Tshark's JSON output, why are fields single-value arrays?

Parameters "eth.dst, ip.src, ip.dst and ip.proto" are captured at IP packet level. You have one single packet captured i

2023-04-05 13:18:43 +0000 answered a question In Tshark's JSON output, why are fields single-value arrays?

Parameters "eth.src -e eth.dst -e ip.src -e ip.dst -e ip.proto" are captured at IP packet level. You have one single pac

2023-04-05 13:09:00 +0000 edited answer How do I view HTTP or HTTPS requests?

You haven't written if you see any packets at all. If not, then you are not capturing correct network. If yes, then you

2023-04-05 13:08:17 +0000 edited answer How do I view HTTP or HTTPS requests?

You haven't specified if you see any packet at all. If not then you are not capturing correct network. For http traffic

2023-04-05 13:07:59 +0000 answered a question How do I view HTTP or HTTPS requests?

You haven't specified if you see any packet at all. If not then you are not capturing correct network. For http traffic

2023-04-05 10:46:06 +0000 edited question How to write filter in tshark to get only data I need?

How to write filter in tshark to get only data I need? I would like to capture database name, userid and passwords into

2023-04-05 10:45:21 +0000 edited question How to write filter in tshark to get only data I need?

How to write filter in tshark to get only data I need? I would like to capture database name, userid and passwords into

2023-04-05 10:44:29 +0000 edited question How to write filter in tshark to get only data I need?

How to write filter in tshark to get only data I need? I would like to capture database name, userid and passwords into

2023-04-05 10:43:47 +0000 asked a question How to write filter in tshark to get only data I need?

How to write filter in tshark to get only data I need? I would like to capture database name, userid and passwords into

2023-04-03 09:19:41 +0000 commented answer What does yellow color means in Package Details?

@Guy Harris, yes I see now, DRDA protocol in Wireshark is not decoded perfectly. It has multiple limitations. I have rea

2023-04-03 09:19:19 +0000 answered a question What does yellow color means in Package Details?

@Guy Harris, yes I see now, DRDA protocol in Wireshark is not decoded perfectly. It has multiple limitations. I have rea

2023-04-03 09:06:32 +0000 commented answer What does yellow color means in Package Details?

@Chuckc, thanks for pointing me out to documentation. @Guy Harris, thanks for the info about possible problems. I have l

2023-03-28 11:12:24 +0000 edited question What does yellow color means in Package Details?

What does yellow color means in Package Details? Hi, Wireshark 4.0.4 I see some yellow background color in Package Deta

2023-03-28 11:09:34 +0000 received badge  Editor (source)
2023-03-28 11:09:34 +0000 edited question What does yellow color means in Package Details?

What does yellow color means in Package Details? Hi, Wireshark 4.0.4 I see some yellow background color in Package Deta

2023-03-28 11:08:57 +0000 asked a question What does yellow color means in Package Details?

What does yellow color means in Package Details? Hi, Wireshark 4.0.4 I see some yellow background color in Package Deta