Re: [tcpdump-workers] text format stability

2004-06-30 Thread Guy Harris
On Thu, Jul 01, 2004 at 07:34:44AM +0200, Fulvio Risso wrote: > Ethereal is able to prodice PDML output (altough it uses a slightly modified > dialectn of PDML). What are the modifications? (Note that one problem is that PDML's field names come from the NetPDL specification for the protocol - thi

Re: [tcpdump-workers] text format stability

2004-06-30 Thread Fulvio Risso
> -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] Behalf Of Michael > Richardson > Sent: mercoledì 30 giugno 2004 21.58 > To: [EMAIL PROTECTED] > Subject: Re: [tcpdump-workers] text format stability > > > -BEGIN PGP SIGNED MESSAGE- > > > > "Guy" == Guy

Re: [tcpdump-workers] text format stability

2004-06-30 Thread Guy Harris
On Jun 30, 2004, at 12:58 PM, Michael Richardson wrote: How widespread is PDML? Tethereal and Ethereal can generate it; I presume the intent is to have Analyzer 3.0 generate it as well, given that it was invented by the Politecnico di Torino folks. (I don't see anything immediately obvious on

Re: [tcpdump-workers] XML dissector output

2004-06-30 Thread Christian Kreibich
On Wed, 2004-06-30 at 12:50, Michael Richardson wrote: > -BEGIN PGP SIGNED MESSAGE- > > > > "Christian" == Christian Kreibich <[EMAIL PROTECTED]> writes: > Christian> proposal that while I personally think an XML capture > Christian> format is not the right idea, an XML based

Re: [tcpdump-workers] Libpcap and Super User mode

2004-06-30 Thread Guy Harris
On Jun 30, 2004, at 10:00 AM, Jefferson Ogata wrote: More specifically, you can use libpcap as any user. On most systems, you have to be root, however, to monitor traffic on a network interface. I.e., you can use libpcap to read a capture file as any user (if that user has permission to read the

Re: [tcpdump-workers] text format stability

2004-06-30 Thread Michael Richardson
-BEGIN PGP SIGNED MESSAGE- > "Guy" == Guy Harris <[EMAIL PROTECTED]> writes: Guy> Along those lines, Tethereal currently offers the ability to Guy> output either one-line summary information, a detailed Guy> multi-line parse, *or* PDML XML-based dissection for packets.

[tcpdump-workers] XML dissector output

2004-06-30 Thread Michael Richardson
-BEGIN PGP SIGNED MESSAGE- > "Christian" == Christian Kreibich <[EMAIL PROTECTED]> writes: Christian> proposal that while I personally think an XML capture Christian> format is not the right idea, an XML based tcpdump output Christian> would be great in the long term -- it

Re: [tcpdump-workers] text format stability

2004-06-30 Thread Michael Richardson
-BEGIN PGP SIGNED MESSAGE- > "Eddie" == Eddie Kohler <[EMAIL PROTECTED]> writes: Eddie> These changes should not have been implemented globally, Eddie> without some flag or option to preserve the old behavior. Eddie> Such a flag should be added. It is really hard to do

[tcpdump-workers] new capture file format

2004-06-30 Thread Michael Richardson
-BEGIN PGP SIGNED MESSAGE- > "Christian" == Christian Kreibich <[EMAIL PROTECTED]> writes: Christian> A few months ago this list saw a discussion of the future Christian> capture file format (what's the latest on that btw), and I've been going around inviting various users

Re: [tcpdump-workers] Libpcap and Super User mode

2004-06-30 Thread Jefferson Ogata
[EMAIL PROTECTED] wrote: Is it possible to write a program using libpcap that doesnt need to be run in super user mode, and if there is how would that be done. Everything that i have seen that uses libpcap has to be in su mode At least on BSD based systems, it depends on readability of the /dev/bp

Re: [tcpdump-workers] Libpcap and Super User mode

2004-06-30 Thread sthaug
> Is it possible to write a program using libpcap that doesnt need to be run in super > user mode, and if there is how would that be done. Everything that i have seen that > uses libpcap has to be in su mode At least on BSD based systems, it depends on readability of the /dev/bpf* devices and n

[tcpdump-workers] Libpcap and Super User mode

2004-06-30 Thread Bowser Jason S Contr AFRL/IFTA
Title: Message Hello everyone   Is it possible to write a program using libpcap that doesnt need to be run in super user mode, and if there is how would that be done.  Everything that i have seen that uses libpcap has to be in su mode   jason

[tcpdump-workers] Automatic report from sources (tcpdump libpcap htdocs) between 28.06.2004 - 30.06.2004 GMT

2004-06-30 Thread Automatic cvs log generator /tcpdump/bin/makelog
CVS log entries from 28.06.2004 (Mon) 09:10:41 - 30.06.2004 (Wed) 09:04:04 GMT = Summary by authors = Author: hannes File: tcpdump/print-gre.c; Revisions: 1.26 ==