Ask Your Question

cmaynard's profile - activity

2019-01-16 13:15:46 +0000 edited question Can I automatically fill a value_string array?

Can I automatically fill a value_string array? Hey Guys, I want to write a dissector for eCPRI. In this protocol you fin

2019-01-16 13:14:35 +0000 edited question Can I automatically fill a value_string array?

Can I fill automaticly a value_string array? Hey Guys, I want to write a dissector for eCPRI. In this protocol you find

2019-01-14 14:47:07 +0000 edited question Where can I find randpkt in 2.2.3 on Windows?

Where can i find randpkt in 2.2.3 on Windows. Other utilities like mergecap or editcap are available. Checked Wireshark

2019-01-14 14:46:43 +0000 edited answer Where can I find randpkt in 2.2.3 on Windows?

Unfortunately, randpkt isn't packaged with Wireshark on Windows, so you'll have to compile it yourself. You may wish to

2019-01-11 19:30:46 +0000 answered a question How to colorize the specific IE's of the packet apart from the packet detail colorization which we do via colorization rule?

It is not possible to colorize individual fields or elements, only packets.

2019-01-11 19:30:46 +0000 received badge  Rapid Responder (source)
2019-01-10 22:14:38 +0000 commented answer lua dissector - data from subtree doesn't displayed

OK, so presumably you meant to write the following and once you changed it the problem was solved? Status_subtree:add(f

2019-01-10 14:57:01 +0000 received badge  Rapid Responder (source)
2019-01-10 14:57:01 +0000 answered a question lua dissector - data from subtree doesn't displayed

I'm assuming that the least significant bit of the 4 bytes of the status field in little-endian byte order is the Elemen

2019-01-09 15:48:17 +0000 answered a question displayed packets unmatched when trying to export

The number of exported frames could be higher than the number of displayed frames because it also includes dependent fra

2019-01-09 15:48:17 +0000 received badge  Rapid Responder (source)
2019-01-08 13:53:48 +0000 commented answer How to dissect packets whose destination IP lies within a range of IP addresses

As documented in address.h, cmp_address(addr1, addr2) returns 0 if they're equal, a positive number if addr1 > addr2

2019-01-08 13:53:11 +0000 commented answer How to dissect packets whose destination IP lies within a range of IP addresses

As documented in address.h, cmp_address(addr1, addr2) returns 0 if they're equal, a positive number if addr1 > addr2

2019-01-07 20:14:36 +0000 answered a question How to dissect packets whose destination IP lies within a range of IP addresses

Are you sure you're using cmp_address() correctly? Like memcmp(), it returns 0 for a match.

2019-01-07 20:14:36 +0000 received badge  Rapid Responder (source)
2019-01-07 19:57:50 +0000 answered a question How to handle 6 byte unsigned integer field in lua dissector?

Below is a working example of adding a 64-bit value to a tree, as well as grabbing the 64-bit value to do something else

2019-01-07 19:57:50 +0000 received badge  Rapid Responder (source)
2019-01-07 15:49:37 +0000 commented answer How do I only dissect packets within a range of IP addresses but any port?

Please ask this in a new question. Asking additional questions as comments in other questions means these questions can

2019-01-07 15:00:16 +0000 edited answer Can I add a legend to an IO Graph?

This bug is being tracked as Bug 13854. It was opened by Betty DuBois on June 27, 2017. As I noted in the bug report,

2019-01-07 14:45:06 +0000 commented question How to handle 6 byte unsigned integer field in lua dissector?

Caution, I only know enough Lua to be dangerous, but can't you use a tvbrange:uint64() with the 6 byte range, to retriev

2019-01-04 21:47:34 +0000 answered a question How do I only dissect packets within a range of IP addresses but any port?

I think what you'll need to do is to register your dissector a heuristic dissector. This basically means that your diss

2019-01-04 21:47:34 +0000 received badge  Rapid Responder (source)
2019-01-04 21:09:39 +0000 received badge  Rapid Responder (source)
2019-01-04 21:09:39 +0000 answered a question geoip - MAP is missing

This feature was removed but a bug has already been filed for it to be added back again. You can follow its progress at

2019-01-04 16:56:00 +0000 edited answer How to save a Time Shift?

As far as I can tell, it's not possible to save a time-shifted capture file directly from Wireshark. If you would like

2019-01-04 16:39:44 +0000 edited answer Does the LUA dissector API support conversation analysis?

As far as I'm aware, it's not yet possible to perform request/response tracking with Lua dissectors. I would recommend

2019-01-03 22:19:56 +0000 commented answer How to make tshark/wireshark to analyze tcp flow group by interface_id

For anyone who's interested in this feature, bug 14973 was filed and is tracking its progress.

2019-01-03 22:13:09 +0000 edited answer Where can I find randpkt in 2.2.3 on Windows?

Unfortunately, randpkt isn't packaged with Wireshark on Windows, so you'll have to compile it yourself. You may wish to

2019-01-03 21:44:36 +0000 edited answer How do I export or import macro filters list in wireshark?

With the latest development version of Wireshark, you can copy display filter macros from one profile to another via Ana

2019-01-03 21:42:37 +0000 commented answer tshark view mac address (vendor) name

For what it's worth, bug 15300 and bug 15393 have been filed as a direct result of this question being asked.

2019-01-03 21:11:10 +0000 commented answer filter for "data" to match packets

FYI: Bug 15392 has been opened to address the problem with the matches (~) operator not working with protocols as it sho

2019-01-03 20:40:32 +0000 edited answer Can I add a legend to an IO Graph?

This bug is being tracked as Bug 13854. It was opened by Betty DuBois on June 27, 2017. As I noted in the bug report,

2019-01-03 20:39:44 +0000 answered a question Can I add a legend to an IO Graph?

This bug is being tracked as Bug 13854. It was opened by Betty DuBois on June 27, 2017.

2019-01-03 20:15:29 +0000 commented answer Wireshark won't dissect time protocol completely

For reference, bug 15159 was filed and is tracking this.

2019-01-03 19:57:43 +0000 commented question tshark programmatic capture

There may be better ways to solve your problem, such as what Guy suggests, but in case it helps, you might want to take

2019-01-03 19:45:12 +0000 commented answer how to precompile and use precompiled lua dissectors

Bug 15391 has been filed.

2019-01-03 19:22:55 +0000 commented question How to correct Mobile Network Code

Was a bug ever opened for this? If so, can you add a link here to the bug for future reference?

2019-01-03 19:19:45 +0000 commented answer Feature Request - Implement warning when HTTP content-length value doesn't match actual HTTP payload

For reference, Bug 15094 is tracking this feature request.

2019-01-03 14:28:54 +0000 edited answer How did you validate the software?

Wireshark is not certified software. Copyright 1998-2018 Gerald Combs <[email protected]> and contributors. Li

2019-01-03 14:27:53 +0000 received badge  Rapid Responder (source)
2019-01-03 14:27:53 +0000 answered a question How did you validate the software?

Wireshark is not certified software. Copyright 1998-2018 Gerald Combs <[email protected]> and contributors. Li

2019-01-02 22:57:31 +0000 commented answer how to restore snaplen to "default"?

Bug 15389 has been filed.

2019-01-02 21:11:46 +0000 commented answer tshark to write packets to text file every minute?

To follow up on my previous comment about the odd behavior of -b files:1, I believe this is just another occurrence of B

2019-01-02 20:45:01 +0000 commented answer We are unable to update our Wireshark using the Zscaler App

To close the loop here, Bug 15020 is resolved with later Wireshark releases, the current one as of this writing being 2.

2019-01-02 15:26:37 +0000 edited question How do I export or import macro filters list in wireshark?

How do I export or import macro filters list in wireshark? How do I export or import macro filters list in wireshark? Th

2019-01-02 15:26:28 +0000 edited question How do I export or import macro filters list in wireshark?

How do i export or import macro filters list in wireshark? How do i export or import macro filters list in wireshark? Th

2019-01-02 15:26:10 +0000 edited answer How do I export or import macro filters list in wireshark?

With the latest development version of Wireshark, you can copy display filter macros from one profile to another via Ana

2019-01-02 15:23:58 +0000 edited question How do I export or import macro filters list in wireshark?

macro filter How do i export or import macro filters list in wireshark? Thanks

2019-01-02 15:23:11 +0000 edited answer How do I export or import macro filters list in wireshark?

With the latest development version of Wireshark, you can copy display filter macros from one profile to another via Ana

2019-01-02 15:18:05 +0000 received badge  Rapid Responder (source)