Ask Your Question

grahamb's profile - activity

2021-01-18 15:27:17 +0000 commented answer Problem with preferences in TShark (Wireshark) 3.4.2

I haven't gone through the commits just comparing the code in your extcaps with that for sshdump. There are framework m

2021-01-18 14:23:27 +0000 commented answer Problem with preferences in TShark (Wireshark) 3.4.2

I'm not sure what's going on, maybe create a new profile in Wireshark to clean out old preferences, then pass that into

2021-01-18 10:44:34 +0000 commented answer Problem with preferences in TShark (Wireshark) 3.4.2

Then try printing the preferences, this will be huge so either filter with the tools of your choice or redirect to a fil

2021-01-18 08:46:05 +0000 answered a question Problem with preferences in TShark (Wireshark) 3.4.2

Are the plugins actually loading, if not that might explain the lack of support for their preferences? Does tshark -G p

2021-01-18 08:46:05 +0000 received badge  Rapid Responder (source)
2021-01-16 14:34:55 +0000 commented answer No internet until I open Wireshark

That's already in progress, the next releases of Wireshark will use 1.10, maybe even a newer version if released by npca

2021-01-16 14:27:53 +0000 commented question local interfaces are unavailable because the packet capture driver isn't loaded

What is the updated version of WinPcap, the last release was 4.1.3 back in 2013. What is your OS and Wireshark version?

2021-01-16 11:02:25 +0000 commented question local interfaces are unavailable because the packet capture driver isn't loaded

Did you install the very old and obsolete WinPcap, or npcap?

2021-01-15 14:15:45 +0000 edited question Proxy closes connection, not server/client. Why?

Proxy closes connection, not server/client. Why? Hello Wireshark-Community, we have a challenge with our proxy server, b

2021-01-15 12:03:15 +0000 commented question No internet until I open Wireshark

Help info: 3.4.2 (v3.4.2-0-ga889cf1b1bf9) Compiled (64-bit) with Qt 5.15.1, with libpcap, with GLib 2.52.3, with zlib

2021-01-15 11:58:42 +0000 answered a question No internet until I open Wireshark

You're running on Windows with the npcap (1.00) capture library, which is the element that may be affecting your connect

2021-01-15 11:58:42 +0000 received badge  Rapid Responder (source)
2021-01-15 11:15:31 +0000 commented question No internet until I open Wireshark

Your OS and Wireshark version? Please copy and paste the info from the menu: Help -> About Wireshark -> Wireshar

2021-01-14 20:50:51 +0000 commented question My Windows machine has only USBcap1 and USBcap2, not Ethernet

On Windows you need to install a "capture driver", for recent versions of Wireshark this is npcap. Did you install npca

2021-01-14 11:53:57 +0000 commented answer How can i create own errors in wireshark dissector

Unfortunately not documented in the usual places that I could see. Commits to fix this are welcomed.

2021-01-14 11:10:37 +0000 answered a question How can i create own errors in wireshark dissector

The Wireshark support for this concept is called Expert Info: The general idea behind the following "Expert Infos" i

2021-01-14 11:10:37 +0000 received badge  Rapid Responder (source)
2021-01-13 12:40:48 +0000 edited question why arent my internet connections not showing up ?

why arent my internet connections not showing up ?

2021-01-13 12:38:30 +0000 commented question why arent my internet connections not showing up ?

Likely that you either don't have a capture driver installed, or the installation of it has gone awry. Assuming that yo

2021-01-07 09:46:49 +0000 received badge  Rapid Responder (source)
2021-01-07 09:46:49 +0000 answered a question Please add support for the following AVP: TCP-Source-Port

Enhancement requests should be raised in the Wireshark GitLab Issue tracker, please attach a capture file containing the

2021-01-07 08:54:09 +0000 commented question Wireshark exits when a capture is stopped on Windows

I also have such one issue, my information as below: Using the USB interface Wireshark information: 3.4.2 (v3.4.2-0-g

2021-01-07 08:53:29 +0000 commented question Wireshark exits when a capture is stopped on Windows

I also have such one issue, my information as below: USB interface wireshark information 3.4.2 (v3.4.2-0-ga889cf1b1bf

2021-01-06 19:21:51 +0000 commented answer Modbus/TCP decoding "func 3" seems wrong

Frame 7 contains a partial response to the Write registers request in frame 6. Frame 10 contains the final byte of this

2021-01-06 18:38:45 +0000 edited answer Modbus/TCP decoding "func 3" seems wrong

The remote device does not respond to the Read Holding Registers request. Looking at the first capture and applying a d

2021-01-06 18:38:23 +0000 received badge  Rapid Responder (source)
2021-01-06 18:38:23 +0000 answered a question Modbus/TCP decoding "func 3" seems wrong

The remote device does not respond to the Read Holding Registers request. Looking at the first capture and applying a d

2021-01-06 17:42:55 +0000 commented question Modbus/TCP decoding "func 3" seems wrong

Upload the capture file to a public share, e.g. Google Drive, DropBox etc. and post a link to the file back here.

2021-01-06 15:04:16 +0000 answered a question One Entry per Source-IP/Dest-Port

In the Statistics menu there is an item "Endpoints" that displays a dialog which (for various protocols as shown on the

2021-01-06 15:04:16 +0000 received badge  Rapid Responder (source)
2021-01-06 14:56:48 +0000 commented answer How to install the development header file from source ?

The RPM's are create by others outside of the Wireshark project. The wireshark-devel package appears to be a snapshot o

2021-01-06 11:54:01 +0000 received badge  Rapid Responder (source)
2021-01-06 11:54:01 +0000 answered a question How to install the development header file from source ?

You need to install the full source, all the required dependencies and then build from the source directories. There is

2021-01-06 11:49:43 +0000 commented question Execute Wireshark.exe from run is not loading custom dissectors

plugin.dll is getting created under run\Release\plugins\3.2\my-plugin\plugin.dll. This is the issue, your plugin is

2021-01-06 09:13:55 +0000 commented question How to install the development header file from source ?

Those are the Wireshark headers from the source tree. I'm not an expert on Linux builds, but I don't think there is a w

2021-01-06 08:57:36 +0000 commented question How to install the development header file from source ?

What header files? What OS\Distribution?

2021-01-06 08:25:53 +0000 commented answer Bluetooth traffic not seen by Wireshark on Windows

I don't think WinPcap ever supported bluetooth and as it's obsolete it never will.

2021-01-06 08:25:15 +0000 edited question Bluetooth traffic not seen by Wireshark on Windows

Bluetooth traffic not seen by Wireshark on Windows Hi All, Are there any known issues capturing Bluetooth traffic with

2021-01-06 08:24:36 +0000 commented question Execute Wireshark.exe from run is not loading custom dissectors

The "normal" path for a release build is run\RelWithDebInfo. If you're got things in run\Release then by definition you

2021-01-06 08:20:41 +0000 commented answer what is the best way to clean up in extcap?

Issue 17131 is filed, please continue the discussion over there. I will close this question. Thanks

2021-01-05 12:08:45 +0000 commented answer Are these DHCP requests and responses OK

To answer your question a little more completely, you could track down the devices using those MAC addresses (hopefully

2021-01-05 12:08:20 +0000 commented answer Are these DHCP requests and responses OK

To answer your question a little more completely, you could track down the devices using those MAC addresses (hopefully

2021-01-05 08:38:40 +0000 answered a question what is the best way to clean up in extcap?

This issue came up last year on the Wireshark dev mailing list, see here, but there was apparently no conclusion found.

2021-01-05 08:38:40 +0000 received badge  Rapid Responder (source)
2021-01-04 22:33:51 +0000 commented answer make wireshark.exe return json via cmd

Could be in one of the distributed plugins.

2021-01-04 21:01:19 +0000 edited question Are these DHCP requests and responses OK

a question about logs on my router. I just want to know what they are for or mean and if it all looks normal. i am not c

2021-01-04 21:00:39 +0000 received badge  Rapid Responder (source)
2021-01-04 21:00:39 +0000 answered a question Are these DHCP requests and responses OK

Standard DHCP requests and responses to and from devices on your local network. Nothing to be concerned about.

2021-01-04 20:58:13 +0000 edited question Are these DHCP requests and responses OK

a question about logs on my router. I just want to know what they are for or mean and if it all looks normal. i am not c

2021-01-04 20:56:53 +0000 commented answer make wireshark.exe return json via cmd

tshark shouldn't crash. Please raise an issue at the Wireshark GitLab issue tracker attaching the capture file if at al