Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-02-06 Thread Joerg Mayer
On Tue, Feb 06, 2007 at 09:53:32AM +0800, Jeff Morriss wrote: > > I have just on concern... The Cisco allows the user to set the syslog > > facility and severity when starting the debug. The values you saw were > > the default values. Therefore, checking for LOCAL0/DEBUG only might > > cause proble

Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-02-05 Thread Jeff Morriss
Hi Abhik, Abhik Sarkar wrote: > Thanks for your help with this, for the explanation of the changes and > for including it in the code. I still have a lot to learn. So did I, that's why it took me a while to rework your patch ;-) > I have just on concern... The Cisco allows the user to set the s

Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-02-01 Thread Abhik Sarkar
Hi Jeff, Thanks for your help with this, for the explanation of the changes and for including it in the code. I still have a lot to learn. I have just on concern... The Cisco allows the user to set the syslog facility and severity when starting the debug. The values you saw were the default value

Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-02-01 Thread Jeff Morriss
Abhik Sarkar wrote: >> I have also been trying to find out a way to get the syslog dissector >> to tells all subsequent dissectors that the byte array was generated >> and not present in the actual capture and hence to mark their protocol >> tree items using the PROTO_ITEM_SET_GENERATED macro, bu

Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-01-28 Thread Abhik Sarkar
Sorry! Forgot to change the subject in my previous post :-( On 1/29/07, Abhik Sarkar <[EMAIL PROTECTED]> wrote: > > Date: Sun, 28 Jan 2007 14:57:58 +0800 > > From: Jeff Morriss <[EMAIL PROTECTED]> > > Subject: Re: [Wireshark-dev] Dissector for Cisco ITP packe

Re: [Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-01-27 Thread Jeff Morriss
Abhik Sarkar wrote: [...] > First an introduction in the form of a quote from the Cisco ITP manual... > > > The ITP Packet Logging facility uses the BSD syslog protocol (RFC > 3164) to send selected (SS7) MSUs to a user-selected monitoring tool > via the UDP connectionless protocol (RFC 768). Ci

[Wireshark-dev] Dissector for Cisco ITP packet logging facility

2007-01-25 Thread Abhik Sarkar
Hello All, This probably doesn't qualify as a "dissector", but this has been very useful for me since I wrote it a couple of days back and I thought it might be useful for someone else too... First an introduction in the form of a quote from the Cisco ITP manual... The ITP Packet Logging facil