Hi List,

Just a few words to say we have started to work on a MAPI dissector for
wireshark. For the moment we only handles EcDoConnect,EcDoDisconnect and
EcDoRpc requests - Furthermore only a very limited set of MAPI calls.
However we are now accustomed with Wireshark API and development and we
should be able to move forward soon.

I'll push the code on the repository when I have more work completed.

The dissector requires a couple of modifications in the IDL (cause most
part of the emsmdb one is not NDR valid) and a few modifications in the
pidl Wireshark parser (awaiting Samba's team approval).

As Jelmer mentioned, we should be able once we move from NDR to TDR to
have a much more reliable dissector - almost automatically generated
from pidl - but this won't happen really soon. Furthermore I feel like
having the dissector now will be worthwhile for further development.

For those interested, here are preliminary screenshots:

http://www.openchange.org/images/wireshark_mapi_draft.png
http://www.openchange.org/images/wireshark_mapi_draft2.png

Cheers,
Julien.

-- 
Julien Kerihuel
[EMAIL PROTECTED]
OpenChange Project Manager

GPG Fingerprint: 0B55 783D A781 6329 108A  B609 7EF6 FE11 A35F 1F79

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
devel mailing list
[email protected]
http://mailman.openchange.org/listinfo/devel

Reply via email to