Ask Your Question

Rooster_50's profile - activity

2024-01-11 16:32:42 +0000 edited answer Unable to install Wireshark updates on my Windows ec2 instance

This was a bug addressed in version 4.2.2. Simply download the 4.2.2 installer from the website and manually upgrade y

2024-01-11 16:32:12 +0000 received badge  Rapid Responder (source)
2024-01-11 16:32:12 +0000 answered a question Unable to install Wireshark updates on my Windows ec2 instance

This was a bug addressed in version 4.2.2. Simply download the 4.2.2 installer from the website and manually upgrade y

2023-12-05 05:00:55 +0000 edited answer Duplicate packets from VMware host

I know this is an old post, but I did find a "somewhat" workaround to eliminate the duplicate packets when capturing on

2023-12-05 04:59:03 +0000 answered a question Duplicate packets from VMware host

I know this is an old post, but I did find a "somewhat" workaround to eliminate the duplicate packets when capturing on

2023-11-20 14:15:48 +0000 answered a question DNS query retransmission and query response retransmission

It could be the way you are obtaining your capture. For instance, if you are using port span (port mirror), you could b

2023-11-20 14:15:48 +0000 received badge  Rapid Responder (source)
2023-11-20 14:15:42 +0000 received badge  Rapid Responder (source)
2023-11-20 14:15:42 +0000 answered a question DNS query retransmission and query response retransmission

It could be the way you are obtaining your capture. For instance, if you are using port span (port mirror), you could b

2022-12-13 23:16:09 +0000 edited answer Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If us

2022-12-13 23:15:12 +0000 edited answer Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If us

2022-12-13 23:14:38 +0000 edited answer Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If us

2022-12-13 23:14:04 +0000 edited answer Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If us

2022-12-13 23:10:32 +0000 edited answer Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If us

2022-12-13 23:04:57 +0000 answered a question Filter RFC1918 prefixes

!(ip.src in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16} || ip.dst in {10.0.0.0/8, 172.16.0.0/12, 192.168.0.0/16}) If u

2022-10-19 21:30:40 +0000 received badge  Famous Question (source)
2022-10-10 13:13:44 +0000 received badge  Commentator
2022-10-10 13:13:44 +0000 commented answer Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0?

The issue has been resolved in versions 4.0.1rc0-7 and higher.

2022-10-05 14:32:59 +0000 commented question Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0?

Bug# 18413 has been submitted.

2022-10-05 14:32:07 +0000 commented question Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0?

Bug# 18413 has been submitted. https://gitlab.com/wireshark/wireshark/-/issues/18413

2022-10-05 13:48:11 +0000 commented question Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0?

Bug# 18413 has been submitted.

2022-10-05 02:25:26 +0000 asked a question Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0?

Has anyone run into issues of no audio in the RTP player using Wireshark version 4.0? RTP player working in version 3.6.

2022-09-15 03:18:54 +0000 marked best answer How to export file name using T fields

I am using a "for" loop to process a file set exporting several fields using -T fields -e <display field=""> out to a text file. Is it possible to somehow export the name of the file with each processed line so that I know which file in the set it is from?

Thanks in advance!

2022-09-15 03:18:49 +0000 commented answer How to export file name using T fields

I'm using Windows 10, but using WSL Ubuntu. That worked like a champ! Thanks!

2022-09-15 00:30:37 +0000 asked a question How to export file name using T fields

How to export file name using T fields I am using a "for" loop to process a file set exporting several fields using -T f

2021-11-12 03:35:34 +0000 answered a question RTP not showing up in SIP Call Flow

If the SDP protocol is not present in the capture which setup the streams you are wanting to see, then wireshark by defa

2020-08-14 04:09:47 +0000 answered a question Windows 10 - No Interfaces found

open a command prompt (run as Administrator), and type "sc query npcap" If the STATE shows it is stopped, type the foll

2020-04-15 01:43:53 +0000 received badge  Rapid Responder (source)
2020-04-15 01:43:53 +0000 answered a question NBNS, ICMP followed by DHCP

As the DHCP lease time is only 10 minutes, you will be seeing the renewal process from the client every 5 minutes. I do

2020-03-27 03:16:11 +0000 commented answer rtp max delta

SSRC 0x0000d93a is very pristine with 0ms jitter and 0ms skew. The high delta times seem to be legitimate breaks in th

2020-03-25 00:58:39 +0000 commented answer rtp max delta

When you look at the RTP streams using the tool: TELEPHONY > RTP STREAMS, and then click on the ANALYZE button after

2020-03-25 00:57:42 +0000 commented answer rtp max delta

When you look at the RTP streams using the tool: TELEPHONY > RTP STREAMS, and then click on the ANALYZE button after

2020-03-24 02:08:41 +0000 edited answer rtp max delta

There could be VAD (Voice Activity Detection) or Silence Suppression in play. Are there RTP markers at the points of t

2020-03-24 01:35:33 +0000 answered a question rtp max delta

There could be VAD (Voice Activity Detection) or Silence Suppression in play. Are there RTP markers at the points of t

2020-02-26 06:35:57 +0000 received badge  Notable Question (source)
2020-02-26 06:35:57 +0000 received badge  Popular Question (source)
2019-01-21 18:19:06 +0000 answered a question Why does it delay on "C:\Program Files\Wireshark\vcredist_x64.exe" Install\Quiet\Norestart on Windows 8?

Answering your question in the title: Because Visual C Redistributable is being installed in the background.

2018-09-18 15:37:06 +0000 commented answer Tshark "-Tfields" option not working

Too long of week already and stared at it way too long to realize the rookie syntax mistake. Thanks Cmaynard!

2018-09-18 15:34:52 +0000 marked best answer Tshark "-Tfields" option not working

Tshark Version 2.6.3 (Windows 64-bit version)

I am trying to export the "data.txt" field to a text file with TSHARK. When I attempt the following...

tshark -r filename.pcapng -Tfields -e data.txt >> dataprint.txt

I get the following error...

tshark: Some fields aren't valid: data.txt

Is this a limitation of the current version of Tshark where data.txt is not a field that can be extracted with the TFields parameter? In the default profile, I have "Show data as text" checked in the protocol preferences.

Thanks,

Travis

2018-09-18 15:34:52 +0000 received badge  Scholar (source)
2018-09-18 14:46:15 +0000 edited question Tshark "-Tfields" option not working

Tshark TFields option not working Tshark Version 2.6.3 (Windows 64-bit version) I am trying to export the "data.txt"

2018-09-18 14:46:15 +0000 received badge  Editor (source)
2018-09-18 14:44:28 +0000 asked a question Tshark Tfields Issue

Tshark Tfields Issue Tshark Version 2.6.3 (Windows 64-bit version) I am trying to export the "data.txt" field to a te

2018-09-18 14:42:06 +0000 asked a question Tshark "-Tfields" option not working

Tshark TFields option not working Tshark Version 2.6.3 (Windows 64-bit version) I am trying to export the "data.txt"

2018-08-19 01:01:54 +0000 received badge  Critic (source)
2018-06-29 00:07:38 +0000 commented question How to find external device's subnet when IP is known?

Just curious.....if you clear your PC's arp cache and ping it again, does the camera respond to the ARP request of your

2018-06-29 00:00:00 +0000 commented question How to find external device's subnet when IP is known?

Just curious.....if you clear your PC's arp cache and ping it again, does the camera respond to the ARP request of your

2018-06-17 13:43:00 +0000 commented question RDP session Disconnect issue

You can always share a file via Dropbox, Google Drive, or similar cloud storage. Just provide the download link in a co