Ask Your Question

dandreye's profile - activity

2021-01-11 12:24:19 +0000 commented answer Error parsing BT HCI trace created with btsnooz.py

Thanks for your comment. Further research revealed that when used on Windows it writes 0D0A instead of every 0A, causing

2021-01-11 12:20:49 +0000 commented answer Error parsing BT HCI trace created with btsnooz.py

Thanks for your comment. Further research revealed that when used on Windows it writes 0D0A instead of every 0A, causing

2021-01-11 00:15:18 +0000 edited question No AVDTP in Bluetooth HCI trace with LDAC audio

No AVDTP in Bluetooth HCI trace with LDAC audio Hi All, Is it normal not to see any AVDTP packets in a Bluetooth HCI t

2021-01-11 00:14:32 +0000 edited question No AVDTP in Bluetooth HCI trace with LDAC audio

No AVDTP in Bluetooth HCI trace with LDAC audio Hi All, Is it normal not to see any AVDTP packets in a Bluetooth HCI t

2021-01-11 00:14:13 +0000 edited question No AVDTP in Bluetooth HCI trace with LDAC audio

No AVDTP in Bluetooth HCI trace with LDAC audio Hi All, Is it normal not to see any AVDTP packets in a Bluetooth HCI tr

2021-01-11 00:12:21 +0000 asked a question No AVDTP in Bluetooth HCI trace with LDAC audio

No AVDTP in Bluetooth HCI trace with LDAC audio Hi All, Is it normal not to see any AVDTP packets in a Bluetooth HCI tr

2021-01-10 23:14:56 +0000 received badge  Rapid Responder (source)
2021-01-10 23:14:56 +0000 answered a question Error parsing BT HCI trace created with btsnooz.py

Apparently that python script btsnooz.py is implied for use with Linux: just verified it on Ubuntu with python v2.7 and

2021-01-10 00:13:28 +0000 edited question Error parsing BT HCI trace created with btsnooz.py

Error parsing BT HCI trace created with btsnooz.py Hi All, I've just used these instructions and python script btsnooz.

2021-01-09 23:50:49 +0000 edited question Error parsing BT HCI trace created with btsnooz.py

Error parsing BT HCI trace created with btsnooz.py Hi All, I've just used these instructions and python script btsnooz.

2021-01-09 23:50:10 +0000 edited question Error parsing BT HCI trace created with btsnooz.py

Error parsing BT HCI trace created with btsnooz.py Hi All, I've just used these instructions and python script btsnooz.

2021-01-09 23:48:54 +0000 edited question Error parsing BT HCI trace created with btsnooz.py

Error parsing BT HCI trace created with btsnooz.py Hi All, I've just used these instructions and python script btsnooz.

2021-01-09 23:47:02 +0000 asked a question Error parsing BT HCI trace created with btsnooz.py

Error parsing BT HCI trace created with btsnooz.py Hi All, I've just used these instructions and python script btsnooz.

2021-01-05 23:19:03 +0000 commented answer Bluetooth traffic not seen by Wireshark on Windows

Thank you! Will do. Btw same problem with Winpcap 4.1.3.

2021-01-05 22:27:11 +0000 marked best answer Bluetooth traffic not seen by Wireshark on Windows

Hi All,

Are there any known issues capturing Bluetooth traffic with Wireshark? My system is Lenovo ThinkPad X1 Gen6 running W10x64 build 10.0.18363.1256 with Bluetooth v4.2 provided by Intel Dual Band Wireless-AC 8265 combo WiFi+BT card (specs here: https://ark.intel.com/content/www/us/...) and Wireshark 3.4.0 captures no Bluetooth traffic on it whatsoever while there's plenty. Just tried upgrading to 3.4.2 build with the details below and still no difference. In the very first Wireshark screen that opens upon launch Bluetooth is among several other interfaces showing no traffic (straight line) - only WiFi and Loopback interfaces do show some. Are there any peculiarities to make Bluetooth traffic capturing work?

Many thanks in anticipation!

3.4.2 (v3.4.2-0-ga889cf1b1bf9)

Compiled (64-bit) with Qt 5.15.1, with libpcap, with GLib 2.52.3, with zlib
1.2.11, with SMI 0.4.8, with c-ares 1.15.0, with Lua 5.2.4, with GnuTLS 3.6.3
and PKCS #11 support, with Gcrypt 1.8.3, with MIT Kerberos, with MaxMind DB
resolver, with nghttp2 1.39.2, with brotli, with LZ4, with Zstandard, with
Snappy, with libxml2 2.9.9, with QtMultimedia, with automatic updates using
WinSparkle 0.5.7, with AirPcap, with SpeexDSP (using bundled resampler).

Running on 64-bit Windows 10 (1909), build 18363, with Intel(R) Core(TM)
i7-8650U CPU @ 1.90GHz (with SSE4.2), with 16258 MB of physical memory, with
locale English_United Kingdom.utf8, with light display mode, without HiDPI, with
Npcap version 1.00, based on libpcap version 1.9.1, with GnuTLS 3.6.3, with
Gcrypt 1.8.3, with brotli 1.0.2, without AirPcap, binary plugins supported (21
loaded).

Built using Microsoft Visual Studio 2019 (VC++ 14.28, build 29335).
2021-01-05 22:27:02 +0000 commented answer Bluetooth traffic not seen by Wireshark on Windows

Thank you! Will do.

2021-01-05 21:21:58 +0000 edited question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 21:02:30 +0000 edited question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 21:01:38 +0000 edited question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 21:00:45 +0000 edited question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 20:59:45 +0000 edited question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 20:58:35 +0000 asked a question No Bluetooth traffic is seen by Wireshark

No Bluetooth traffic is seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark

2021-01-05 20:54:07 +0000 asked a question Bluetooth traffic not seen by Wireshark on Windows

Bluetooth traffic not seen by Wireshark Hi All, Are there any known issues capturing Bluetooth traffic with Wireshark?

2020-12-04 15:08:04 +0000 received badge  Supporter (source)
2020-12-04 15:07:47 +0000 marked best answer Decoding NAS-5GS with 5G-EA0

Hi All,

Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF sends right after successful UE authentication, followed by a few more messages before AMF sends ICSReq back to the UE are still displayed as encrypted even though I use 5G-EA0 (alone) at each end of my N2: http://drive.google.com/file/d/1SThy_...

Here's a pcap with that message (amended - was a wrong one before): https://drive.google.com/file/d/1FfUE...

Does Wireshark have any problems decoding NAS-5GS in it assuming it's in a valid 5G-EA0 format? As per 3GPP 24.501 4.4.5 this is "null ciphering algorithm".

I'm seeing it with the current stable WS version 3.4.0 (v3.4.0-0-g9733f173ea5e). Before this one I had 3.2.2, which couldn't decode even the Security Mode Cmd from the AMF immediately preceding the one in question. This 3.4.0 one does decode it but none of the next 4 messages exchanged in NGAP DL/UL NAS Transport (both 3.2.2 and 3.4.0 seem to decode all subsequent messages exhanged afterwards though, starting with ICSReq).

Many thanks in advance!

2020-12-04 15:03:35 +0000 commented answer Decoding NAS-5GS with 5G-EA0

It does work with that "Try to detect and decrypt EA0" option indeed (thank you!) but... why is such option even needed?

2020-12-04 14:56:56 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:56:56 +0000 received badge  Associate Editor (source)
2020-12-04 14:55:57 +0000 commented answer Decoding NAS-5GS with 5G-EA0

Anders: sorry my bad as I inserted the pcap with Security Mode Cmd itself (which 3.4.0 does decode for me too unlike 3.2

2020-12-04 14:40:12 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:39:25 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:39:00 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:38:13 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:38:01 +0000 edited question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-12-04 14:37:11 +0000 asked a question Decoding NAS-5GS with 5G-EA0

Decoding NAS-5GS with 5G-EA0 Hi All, Some of my NAS-5GS messages such as UE response to the Security Mode Cmd that AMF

2020-05-22 08:42:35 +0000 received badge  Notable Question (source)
2020-05-22 08:42:35 +0000 received badge  Famous Question (source)
2019-12-08 14:12:00 +0000 commented answer Is there a way to differentiate between aptx and aptx hd codec

Thank you. In fact I don't have either of those devices: I'm using Sanwu SW-HF59 Bluetooth receiver connected to car/hom

2019-12-08 14:11:53 +0000 commented answer Is there a way to differentiate between aptx and aptx hd codec

Thank you. In fact I don't have either of those devices: I'm using Sanwu SW-HF59 Bluetooth receiver connected to car/hom

2019-12-08 14:11:34 +0000 commented answer Is there a way to differentiate between aptx and aptx hd codec

Thank you. In fact I don't have either of those devices: I'm using Sanwu SW-HF59 Bluetooth receiver connected to car/hom

2019-12-08 14:11:02 +0000 commented answer Is there a way to differentiate between aptx and aptx hd codec

Thank you. In fact I don't have either of those devices: I'm using Sanwu SW-HF59 Bluetooth receiver connected to car/hom

2019-12-08 13:11:57 +0000 edited answer Is there a way to differentiate between aptx and aptx hd codec

Hi Hassan, Just wondering if you've ever managed to figure out the right answer? My own research suggests AptX codec i

2019-12-08 13:11:29 +0000 edited answer Is there a way to differentiate between aptx and aptx hd codec

Hi Hassan, Just wondering if you've ever managed to figure out the right answer? My own research suggests AptX codec i

2019-12-08 13:10:45 +0000 answered a question Is there a way to differentiate between aptx and aptx hd codec

Hi Hassan, Just wondering if you've ever managed to figure out the right answer? My own research suggests AptX codec i

2019-07-11 10:07:26 +0000 received badge  Popular Question (source)
2019-04-20 03:26:03 +0000 marked best answer PFCP dissector for 3GPP 29.244 Sx interface

Hi All,

Assuming Wireshark already has PFCP dissector by now (seems like it does from a neighbour PFCP thread) do I need to do anything particular to have mine decoded? Getting "malformed" for every single PFCP packet with Wireshark version 2.6.7 for some reason:

Screenshot: https://drive.google.com/open?id=1C6t...

pcapng: https://drive.google.com/open?id=1HwB...

Many thanks in anticipation!..

2019-04-19 10:11:15 +0000 commented answer Tshark capture filter using VLAN ID

SYN-bit: I was also thinking how come I'm the first one asking it ) Works perfectly well: thank you!