Security Basics mailing list archives

Re: command line argumnets in Wireshark to extract the tcp stream


From: unni krishnan <unnikrishnan.a () gmail com>
Date: Wed, 8 Jul 2009 02:22:46 +0530

Hello,

  That is much simpler, thanks.

  But I know that I need to use some filters to get it. Not sure about
that. The link says about SYN packets and not about TCP stream for
SMTP, which needs another set of filters, I believe .

seriously, look at the populated options in the GUI that do what you
want to the traffic, and compare those to the command line.  the fun
of all this _is_ figuring out the technical details!

I dont think that Its that easy to find the corresponding command line
equivalent for one GUI option. Can you provide the command line
equivalent to generate the out put of Analyze >> Follow TCP stream for
a SMTP TCP stream.

I know its just a one line command, but lengthy. selecting the exact
filter is the thing, if you found that just send the command, that
will be helpful.

I already found such links. I like to know answer from some one
already worked with Wireshark, I am sure a Wireshark user in Linux
will know the option. Just waiting for him :-)

On Wed, Jul 8, 2009 at 1:22 AM, Shawn Merdinger<shawnmer () gmail com> wrote:
ok, i suppose i can provide some answer...well, the google can at least ;)

see the thread around this:
http://www.wireshark.org/lists/wireshark-users/200708/msg00001.html

cheers,
--scm

On Tue, Jul 7, 2009 at 3:37 PM, Shawn Merdinger<shawnmer () gmail com> wrote:
On Tue, Jul 7, 2009 at 12:50 PM, unni krishnan<unnikrishnan.a () gmail com> wrote:
Yes, I am able to access that page using the man command for tshark in
Linux. But I want to know the exact command line option to get the
exact out put that I am getting from GUI version. I am confused with
all those options. Can you just give the command that will show the
O/P of GUI version of Wireshark ?





-- 
---------------------
With regards,
Unni

"A candle loses nothing by lighting another candle"

------------------------------------------------------------------------
Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how 
it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, 
install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are 
highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1
------------------------------------------------------------------------


Current thread: