Home page logo
/

wireshark logo Wireshark mailing list archives

Re: Wireshark-users Digest, Vol 94, Issue 10
From: Christopher Maynard <Christopher.Maynard () gtech com>
Date: Mon, 24 Mar 2014 13:42:29 +0000 (UTC)

Christopher Maynard <Christopher.Maynard ()    > writes:

So basically there are 3 steps:

1) Pick a user DLT, say 149 and enter it into the Wireshark user decode:
Edit -> Preferences -> Protocols -> DLT_USER -> Encapsulations Table -> Edit
-> New -> DLT: (Pick 1, i.e., User 2 (DLT=149)) -> Payload protocol: udp ->
OK -> OK -> OK.

2) text2pcap -l 149 [other options] file.txt file.pcap

3) Open file.pcap in Wireshark.

Hope that helps,
- Chris

For more information, you can also refer to the user guide, section 10.20.
User DLTs protocol table 

http://www.wireshark.org/docs/wsug_html_chunked/ChUserDLTsSection.html


___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
AlienVault