Ask Your Question

cmaynard's profile - activity

2019-07-17 17:02:19 +0000 commented question Where is the ASCII representation in Wireshark 3.0.x

Great! If you feel up to it, it would be interesting to try to isolate the root cause, i.e., to determine which file or

2019-07-17 16:22:15 +0000 commented question Where is the ASCII representation in Wireshark 3.0.x

Can you try moving/deleting your entire Wireshark personal configuration folder contents and then launching Wireshark fr

2019-07-17 03:36:32 +0000 edited question Where is the ASCII representation in Wireshark 3.0.x

Where is the ASCII representation in Wireshark 3.0.x Since I installed Wireshark 3.0.x, my packet bytes pane no longer s

2019-07-17 03:35:10 +0000 commented question Where is the ASCII representation in Wireshark 3.0.x

I hate to ask, but is it possible that the ASCII is scrolled off-screen to the right and you just need to drag the verti

2019-07-12 19:47:13 +0000 commented answer USB Capture Of Ethernet Traffic Using Sharktap

According to http://www.midbittech.com/usb/USB%20Start%20Guide.pdf, you may need to restart the capture driver. Also, w

2019-07-08 19:46:51 +0000 commented question Port ARSDK dissector from Wireshark 1.12

README.plugins would be a good place to start.

2019-07-01 03:07:09 +0000 received badge  Rapid Responder (source)
2019-07-01 03:07:09 +0000 answered a question Not seeing UDP packets of smart home device

You need to capture in "monitor mode". Refer to the Wireshark WLAN (IEEE 802.11) capture setup wiki page for informatio

2019-06-19 16:17:14 +0000 commented question print scope

I created a very basic lua script: print("AA") gip_protocol = Proto("TGIP", "TGIP Protocol") print("AB") ... and then

2019-06-19 14:07:40 +0000 commented question How can I find my number in TCP header/payload?

It sounds like you are supposed to either capture a TCP packet where the packet contains certain information, your matri

2019-06-18 16:55:29 +0000 commented question How can I find my number in TCP header/payload?

I'm still not sure exactly what you're trying to do, but the image looks like a hex dump, presumably of packet data? In

2019-06-18 16:55:07 +0000 commented question How can I find my number in TCP header/payload?

I'm still not sure exactly what you're trying to do, but the image looks like a hex dump, presumably of packet data? In

2019-06-18 16:22:37 +0000 commented question How can I find my number in TCP header/payload?

Can you please clarify what you're asking? By "create a recording", do you mean "capture some packets" or something els

2019-06-12 13:42:04 +0000 commented question Decrypt TLS 1.3 with Wireshark

What version of Wireshark are you using? If you're not using the latest version, I'd highly recommend that you upgrade.

2019-06-04 16:35:53 +0000 answered a question Usage of tcap.losttimeout

From the packet-tcap.c source code, the tcap.losttimeout parameter is used as one of the inputs into the algorithm to de

2019-06-04 16:35:53 +0000 received badge  Rapid Responder (source)
2019-06-04 16:24:00 +0000 commented question how do I add a custom interface in wireshark?

Also, add your Wireshark Help -> About Wireshark information, as you don't indicate, among other things, what platfor

2019-06-04 16:11:26 +0000 commented question Wireshark ascii display: per-monitor DPI aware problem?

If you resize the window, does the ASCII data reappear?

2019-05-09 12:33:02 +0000 commented question Why is the AirPcap USB wireless capture adaptor not shown in the capture menu?

Please provide Help -> About Wireshark details. My guess is that you've installed npcap instead of winpcap, but not

2019-04-30 13:25:37 +0000 commented answer how can i add a loopback adapter in wireshark on Windows?

I doubt very much that the Microsoft Loopback Adapter is what you need. As @Jaap suggests, try installing npcap. Also,

2019-04-28 15:54:29 +0000 commented question Npcap 0.992 lost net connection

You could try Npcap 0.993, which was just released, to see if that helps?

2019-04-27 16:18:03 +0000 commented answer how to increase character length in a custom column

Since I don't know how to recompile the program ... yet. Compiling Wireshark yourself for the first time may seem like

2019-04-27 16:17:35 +0000 commented answer how to increase character length in a custom column

Since I don't know how to recompile the program ... yet. Compiling Wireshark yourself for the first time may seem like

2019-04-12 16:54:44 +0000 commented answer geo locate tshark ip address

I'm not familiar with doing this from within Excel, but if Wireshark is already providing you with the lookup informatio

2019-04-12 08:53:54 +0000 received badge  Nice Answer (source)
2019-04-11 21:19:19 +0000 commented answer geo locate tshark ip address

I've been using the update_geoip.bat file I wrote and posted on the Wireshark Tools wiki page to download the Maxmind da

2019-04-11 21:18:33 +0000 commented answer geo locate tshark ip address

I've been using the update_geoip.bat file I wrote and posted on the Wireshark Tools wiki page to download the Maxmind da

2019-04-11 21:18:13 +0000 commented answer geo locate tshark ip address

I've been using the update_geoip.bat file I wrote and posted on the Wireshark Tools wiki page to download the Maxmind d

2019-04-11 21:17:45 +0000 commented answer geo locate tshark ip address

I've been using the update_geoip.bat file I wrote and posted on the Wireshark Tools wiki page to download the Maxmind da

2019-04-11 20:57:11 +0000 answered a question geo locate tshark ip address

Due to Bug 14691 - tshark does not print GeoIP information, you may not be able to reliably accomplish this with tshark

2019-04-11 20:57:11 +0000 received badge  Rapid Responder (source)
2019-04-09 14:45:13 +0000 commented answer RTP Graph question

Strange. I've tried viewing this question with Firefox, Chrome, Edge and Explorer, but the images don't appear for me u

2019-04-09 14:08:10 +0000 answered a question RTP Graph question

Unfortunately, the images aren't visible; that's probably because you don't have enough karma to post images yet. I'm n

2019-04-09 14:08:10 +0000 received badge  Rapid Responder (source)
2019-04-06 17:42:14 +0000 received badge  Rapid Responder (source)
2019-04-06 17:42:14 +0000 answered a question Missing autogen.sh in 3.0.0?

Starting with Wireshark 3.0.0, autotools is no longer supported, only cmake. I am surprised that there's no mention of

2019-04-06 16:22:07 +0000 commented answer how do I filter conversation -conv- command in Tshark version 3.0.0

The port numbers are probably different, so they would constitute different conversations.

2019-04-05 19:01:26 +0000 received badge  Rapid Responder (source)
2019-04-05 19:01:26 +0000 answered a question how do I filter conversation -conv- command in Tshark version 3.0.0

I don't know if you can do this in Wireshark (I don't think so), but you can get pretty good results using tshark I thin

2019-04-02 18:11:27 +0000 answered a question Send wireshark capture directly to a file

You can use dumpcap to essentially capture to a file (or ring buffer of files) forever. A ring buffer might be benefici

2019-04-02 18:11:27 +0000 received badge  Rapid Responder (source)
2019-04-02 16:43:26 +0000 edited answer Wireshark does not decode content of NMR field.

The packet-etsi_card_app_toolkit.c file doesn't dissect that tag (0x16). That might have been an unintentional omission

2019-04-02 15:35:56 +0000 answered a question Wireshark does not decode content of NMR field.

The packet-etsi_card_app_tookkit.c file doesn't dissect that tag (0x16). That might have been an unintentional omission

2019-04-02 15:35:56 +0000 received badge  Rapid Responder (source)
2019-04-01 14:57:45 +0000 edited question Wireshark Lua dissector not showing tree

Whireshark Lua dissector not showing tree I have packet with trailer data after the packet as in ixia timestamp trailer.

2019-04-01 14:56:17 +0000 edited question Wireshark Lua dissector not showing tree

Whireshark Lua dissector not showing tree I have packet with trailer data after the packet as in ixia timestamp trailer.

2019-04-01 14:54:26 +0000 answered a question Wireshark Lua dissector not showing tree

You forgot a critical line of code: if type == 0xae12 then return true end return false Should be: if type == 0xae1

2019-04-01 14:54:26 +0000 received badge  Rapid Responder (source)
2019-03-29 13:38:15 +0000 commented question Merge Hex Dump files

Is this using text2pcap to convert the hex to a pcap?

2019-03-28 16:15:07 +0000 commented answer Is it possible to capture packets on all available interfaces simultaneously?

Unfortunately, it appears that the selection mode is broken ... The command-line capture tools, dumpcap or tshark can b