[Wireshark-dev] Wireshark 0.99.6 is now available

2007-07-05 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Wireshark 0.99.6 has been released. What is Wireshark? Wireshark is the world's most popular network protocol analyzer. It is used for troubleshooting, analysis, development, and education. What's New Bug Fixes The following vulnerab

Re: [Wireshark-dev] [Wireshark-commits] rev 22144: /trunk-0.99.6/ /trunk-0.99.6/: ChangeLog configure.in version.conf

2007-07-05 Thread Gerald Combs
This slipped through the cracks and didn't make it into the release, unfortunately. Sorry about that. Jeff Morriss wrote: > Hi Gerald, > > Any chance to copy the 'configure.in' change to wiretap before the release? > > Regards, > -Jeff > > [EMAIL PROTECTED] wrote: >> http://anonsvn.wireshark.o

[Wireshark-dev] Wireshark Windows installer updated to 0.99.6a

2007-07-09 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 A new Windows installer (wireshark-setup-0.99.6a.exe) has been released in order to fix a problem with updating from WinPcap 4.0 to 4.0.1. There are no other changes in the installer. The source code and U3 packages have not changed. The file size an

Re: [Wireshark-dev] [Wireshark-commits] rev 22259: /trunk/packaging/nsis/ /trunk/packaging/nsis/: wireshark.nsi

2007-07-09 Thread Gerald Combs
Ulf Lamping wrote: > [EMAIL PROTECTED] schrieb: >> http://anonsvn.wireshark.org/viewvc/viewvc.cgi?view=rev&revision=22259 >> >> User: jake >> Date: 2007/07/06 08:34 PM >> >> Log: >> Have the installer propose to install 4.0.1 over 4.0.0. >> >> > I was already writing the mail to complain ;-) >

Re: [Wireshark-dev] GPL license question

2007-07-12 Thread Gerald Combs
Phillip Paradis wrote: > One might be able to do as Nvidia/ATI et. al. do with their drivers. Create > the plug-in itself as a generic binary module which decodes blocks of data; > it would make no use of the Wireshark APIs and cannot include or link with > any GPL code. Then create a stub that fit

Re: [Wireshark-dev] Win32: remove binary zlib.dll completely and compile it for all MSVC variants?

2007-07-13 Thread Gerald Combs
Ulf Lamping wrote: >>> I know I'm asking you to do yet more work, but I think adns needs the same >>> treatment. >>> >> Better make a policy change and implement that. Is 2005EE the way to go? > > The zlib thing is about to remove a MSVC 6 specialty that can be done by the > way 2005EE is alread

Re: [Wireshark-dev] README.packaging is missing

2007-07-16 Thread Gerald Combs
Maynard, Chris wrote: > So, if it's your recommendation to use the subversion sources rather > than posted sources, can the next 0.99.7 release also include the > associated subversion revision? The subversion revision has been included in releases for a while now in svnversion.h. I've added a no

Re: [Wireshark-dev] README.packaging is missing

2007-07-16 Thread Gerald Combs
Graham Bloice wrote: > I would suggest that you use the "releases" branches in svn. See > http://anonsvn.wireshark.org/viewvc/viewvc.py/releases/, although it appears > that 0.99.6 has it's own little special place at the moment. Gerald? Done. ___ Wire

Re: [Wireshark-dev] Patch process changes

2007-07-25 Thread Gerald Combs
Mike Duigou wrote: > Gerald Combs wrote: >> We've had a problem with patches sent to wireshark-dev being missed and >> ignored for a while now. In order to try to keep this from happening, we >> now have new patch submission guidelines: instead of sending them to the &g

[Wireshark-dev] Patch process changes

2007-07-25 Thread Gerald Combs
We've had a problem with patches sent to wireshark-dev being missed and ignored for a while now. In order to try to keep this from happening, we now have new patch submission guidelines: instead of sending them to the list, they should be sent to Bugzilla and marked for review. A page discussing t

Re: [Wireshark-dev] Remote Desktop color palette problem

2007-07-30 Thread Gerald Combs
Maynard, Chris wrote: > It seems that when running Wireshark 0.99.6 over a Windows XP Remote > Desktop connection, there's a problem with the color palette, such that > the text color is always white, rather than black. While it makes the > text hard to read on a gray background, some areas of the

Re: [Wireshark-dev] Wireshark Logo/Icons

2007-08-01 Thread Gerald Combs
Rodney Dawes wrote: > Hi, > > I've drawn a set of icons[1] in the Tango[2] style. Would it be possible > to get these icons into the wireshark source as the primary application > icon? I'm not opposed to changing the current icon set, but it's important to keep an element of the Wireshark logo in

Re: [Wireshark-dev] Wireshark Logo/Icons

2007-08-02 Thread Gerald Combs
Rodney Dawes wrote: > Gerald Combs wrote: >> I'm not opposed to changing the current icon set, but it's important to >> keep an element of the Wireshark logo in order to maintain our brand >> recognition. I'm also concerned that your icons are a little too

[Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-13 Thread Gerald Combs
I've submitted a patch which implements some of the changes discussed at http://wiki.wireshark.org/Development/PrivilegeSeparation . If no one has any objections I'd like to check it in later this week. Original Message Subject: [Wireshark-bugs] [Bug 1741] New: Privilege separati

Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-14 Thread Gerald Combs
Stephen Fisher wrote: > On Mon, Aug 13, 2007 at 02:58:10PM -0700, Gerald Combs wrote: > >> I've submitted a patch which implements some of the changes discussed >> at http://wiki.wireshark.org/Development/PrivilegeSeparation . If no >> one has any objections I

Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-14 Thread Gerald Combs
Ulf Lamping wrote: > Joerg Mayer schrieb: >> On Mon, Aug 13, 2007 at 02:58:10PM -0700, Gerald Combs wrote: >> >>> I've submitted a patch which implements some of the changes discussed at >>> http://wiki.wireshark.org/Development/PrivilegeSeparation . If no

Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-14 Thread Gerald Combs
Jeff Morriss wrote: > If this is the default then the release notes for the next release > better have a *really big* notice about that fact. (Imagine admins who > install Wireshark for their own use but have absolutely no intention of > letting mere mortals sniff the traffic. We don't want th

Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-15 Thread Gerald Combs
Jeff Morriss wrote: > Joerg Mayer wrote: >> On Tue, Aug 14, 2007 at 03:43:07PM -0700, Gerald Combs wrote: >>>> I think it is best (easiest for users) to have Wireshark run as the user >>>> who started it instead of a special user. Compiling it to run as a new &g

Re: [Wireshark-dev] [Wireshark-bugs] [Bug 1741] Privilege separation patch

2007-08-15 Thread Gerald Combs
Guy Harris wrote: > setuid() *should*, at least according to the Single UNIX Specification, > set the real, effective, and set-user ID if the process is running with > appropriate privileges. The same applies, *mutatis mutandis*, to setgid(). According to "Setuid Demystified", this may not work

Re: [Wireshark-dev] Bugzilla error: Insecure dependency in exec

2007-08-20 Thread Gerald Combs
This might be related to this bug: https://bugzilla.mozilla.org/show_bug.cgi?id=340538 However, we're running 2.22.2, which is supposed to include the fix. Shaun Jackman wrote: > I saw the following error when I added an attachment to a bug. > > Cheers, > Shaun > > Software error: > > Insecur

Re: [Wireshark-dev] [Fwd: [Wireshark-bugs] [Bug 1741] New: Privilege separation patch]

2007-08-21 Thread Gerald Combs
Joerg Mayer wrote: > I don't mind the message (see above) but I don't like the forced drop > of privs. I've modified the proposed patch to simply warn the user instead of dropping privs forcefully. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.

Re: [Wireshark-dev] win32 buildbot unhappy

2007-08-23 Thread Gerald Combs
Graham Bloice wrote: > The buildbot is reporting a permission problem. It looks like the GUI crashed during the "capture 10 packets" test, and Windows popped up the "Wireshark has encountered a problem..." dialog. I'll tweak the error reporting settings on the builder. __

Re: [Wireshark-dev] win32 buildbot unhappy

2007-08-24 Thread Gerald Combs
ot; target. >> >> Luis >> >> On 8/24/07, Jeff Morriss <[EMAIL PROTECTED]> wrote: >>> Gerald Combs wrote: >>>> Graham Bloice wrote: >>>>> The buildbot is reporting a permission problem. >>>> It looks like the GUI cras

[Wireshark-dev] We won an award!

2007-09-11 Thread Gerald Combs
Wireshark was awarded InfoWorld's 2007 BOSSIE (Best of Open Source Software) in the network protocol analysis category: http://www.infoworld.com/archives/t.jsp?N=s&V=91650 Congratulations to all of the developers and users over the years who made this happen! Wireshark has one of the best de

[Wireshark-dev] Npf.sys startup

2007-09-14 Thread Gerald Combs
A recent thread on the winpcap-users mailing list touched on a problem with Wireshark on Vista. When a user doesn't have elevated privileges (the default under Vista), and npf.sys has to be started manually (the default everywhere), npf.sys fails to load on demand and you can't see any interfaces

[Wireshark-dev] Wireshark User's and Developer's conference update

2007-09-20 Thread Gerald Combs
SHARKFEST'08, the first ever Wireshark User's and Developer's conference, will be held March 31 to April 2, 2008 at Foothill College in Los Altos Hills, CA (in the bay area). Admission will be between $600 and $675, depending on when you register and if you have a CACE support contract. There wil

Re: [Wireshark-dev] Win32 buildbot is repeatingly running into a "Permission denied" exception ...

2007-09-27 Thread Gerald Combs
Ulf Lamping wrote: > Hi! > > Gerald, could you have a look? The tests are failing with "** ERROR **: file capture-wpcap.c: line 181: assertion failed (has_wpcap) aborting..." I restarted the builder, but it ran into the same error. ___ Wireshark-dev ma

Re: [Wireshark-dev] Win32 buildbot is repeatingly running into a "Permission denied" exception ...

2007-09-27 Thread Gerald Combs
Ulf Lamping wrote: > Hi! > > Gerald, could you have a look? The tests are failing with "** ERROR **: file capture-wpcap.c: line 181: assertion failed (has_wpcap) aborting..." I restarted the builder, but it ran into the same error. ___ Wireshark-dev ma

Re: [Wireshark-dev] [ntar-workers] Extending Wireshark libpcap format support, or start using pcapng now ?!?

2007-09-27 Thread Gerald Combs
Pekka Pietikainen wrote: > Oh. If you add a new DLT_ value, having it in a way that is extensible > + has a way of saying "Here's the raw packet data. It's plain old > DLT_EN10MB". And the next one might be 802.11 and the next one 802.11 with > a radiotap header. The Per-Packet Information heade

[Wireshark-dev] VoIP speaker needed

2007-09-27 Thread Gerald Combs
We'd like to have one or two sessions on VoIP at SHARKFEST. At the moment, we're having trouble finding a speaker. Is anyone interested in giving a presentation on VoIP, or moderating a VoIP birds-of-a-feather session? ___ Wireshark-dev mailing list Wir

Re: [Wireshark-dev] tshark now using dumpcap - unix side currently don't work - need some help on the pipe handling

2007-09-28 Thread Gerald Combs
Stephen Fisher wrote: > On Thu, Sep 27, 2007 at 12:04:13PM -0400, Jeff Morriss wrote: > >> Could other *NIX users test tshark to see if it works (I'll see in a >> while if the buildbots are happy about it)? > > Tshark works fine now on MacOS X. Thanks! It's working for me on Ubuntu, OS X, and S

Re: [Wireshark-dev] Buildbots

2007-09-28 Thread Gerald Combs
Maynard, Chris wrote: > I was looking at the Windows buildbot status to see if the compiling step > would fail at the same place as it fails for me, namely here: > > > Generating Code... > Linking dumpcap.exe > link @C:\DOCUME~1\cmaynard\LOCALS~

Re: [Wireshark-dev] Alternative to USBPcap and Possibility of

2007-10-04 Thread Gerald Combs
Guy Harris wrote: > On Sep 30, 2007, at 9:47 PM, Varuna De Silva wrote: > >> Sorry I shouldve elaborated. What I mean is to have it as a permanent >> extension, to wireshark, in the sense, anybody who want to have this >> card and the interface can have it free. We can have all the >> circuitry

Re: [Wireshark-dev] Linux makefile for asn1

2007-10-05 Thread Gerald Combs
Kukosa, Tomas wrote: >>> Where does NO_PROTO_OPT get defined, Tomas? >> Well, whatever, I've tweaked this in r23074 - hopefully that will work. > > It could be defined in asn1//Makefile.common > E.g. gsmmap or qsiq does not use -p and will define it (when > conevrted to new asn1 makefile style)

Re: [Wireshark-dev] 0.99.6 build problems on Windows

2007-10-05 Thread Gerald Combs
Graham Bloice wrote: > Personally, when I used VC6 I always built with the SDK includes. The > VC6 toolchain and standard includes were so old it was essential, > certainly for my day job. However, I see the Developers Guide claims > that it isn't required. I'd be interested to know if the build

Re: [Wireshark-dev] 0.99.6 build problems on Windows

2007-10-05 Thread Gerald Combs
Graham Bloice wrote: > Personally, when I used VC6 I always built with the SDK includes. The > VC6 toolchain and standard includes were so old it was essential, > certainly for my day job. However, I see the Developers Guide claims > that it isn't required. I'd be interested to know if the build

[Wireshark-dev] FTAM ASN.1 copyright

2007-10-10 Thread Gerald Combs
Someone recently pointed out that the top of asn1/ftam/ISO8571-FTAM.asn has the following notice: -- Module ISO8571-FTAM (ISO 8571-4:1988) -- -- Copyright ? ISO/IEC 1988. This version of -- this ASN.1 module is part of ISO/IEC 8571-4:1988; -- see the ISO|IEC text itself for full legal notices. Do

[Wireshark-dev] Ubuntu Buildbot down

2007-10-10 Thread Gerald Combs
The Ubuntu builder is down due to problems with a hard drive upgrade. It should be back up in the next day or so. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-dev

Re: [Wireshark-dev] Win buildbot failing

2007-11-05 Thread Gerald Combs
Anders Broman wrote: > Hi, > The Windows buildbot has not managed a full build for some time… Hhc.exe is crashing when building the Developer's Guide, apparently due to r22836. Compilation works when I back out that change manually but it's not obvious what's causing the crash. __

Re: [Wireshark-dev] Win buildbot failing

2007-11-05 Thread Gerald Combs
Gerald Combs wrote: > Anders Broman wrote: >> Hi, >> The Windows buildbot has not managed a full build for some time… > > Hhc.exe is crashing when building the Developer's Guide, apparently due to > r22836. Compilation works when I back out that change manually

[Wireshark-dev] 0.99.7 release?

2007-11-06 Thread Gerald Combs
It's been a while since 0.99.6 was released (Holy crap! July 5!), so it would probably be a good idea to push 0.99.7 out the door. I'd like to make a prerelease on the 19th or 20th, with a final release a week later. ___ Wireshark-dev mailing list Wiresh

Re: [Wireshark-dev] The COPYING file (our license) is a mess!

2007-11-19 Thread Gerald Combs
Stephen Fisher wrote: > On Thu, Nov 15, 2007 at 02:30:17AM +0100, Joerg Mayer wrote: >> On Wed, Nov 14, 2007 at 10:20:12PM +0100, Jaap Keuter wrote: >>> So even though I'm not happy with this stuff it seems to be needed to >>> keep *stupid* people of our lists. >> I obviously think so too, but tha

Re: [Wireshark-dev] [Wireshark-commits] rev 23524: /trunk-0.99.7/

2007-11-21 Thread Gerald Combs
Just a quick update on the release: The 0.99.7 trunk was branched off yesterday, and 0.99.7pre1 should be out in the next couple of hours. If any commits after 23524 need to go into the release, please add them to the 0.99.7 Pending section in http://wiki.wireshark.org/Development/Roadmap . [EMA

[Wireshark-dev] Wireshark 0.99.7pre1 is now available

2007-11-21 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Wireshark 0.99.7pre1 is now available for testing. Source code and a Windows installer can be downloaded immediately from http://www.wireshark.org/download/prerelease/wireshark-0.99.7pre1.tar.gz http://www.wireshark.org/download/prerelease/wireshark-

Re: [Wireshark-dev] Wireshark 0.99.7pre1 is now available

2007-11-25 Thread Gerald Combs
Radek Vokál wrote: >> We've also switched from net-snmp to libsmi for OID resolution. > > - Does this mean that net-snmp is no longer supported and we have to > switch to libsmi or is it either/or? 0.99.7 will drop the option to link with Net-SNMP in favor of libsmi. The changes allow filtering

[Wireshark-dev] Postpone the Wireshark 0.99.7 release?

2007-11-27 Thread Gerald Combs
Due to the amount of bug reports and fixes that have come in since 0.99.7pre1 was announced, I'd like to release 0.99.7pre2 tomorrow and postpone the final release until December 5th or 6th. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http:

Re: [Wireshark-dev] Postpone the Wireshark 0.99.7 release?

2007-11-28 Thread Gerald Combs
I'm not sure. The list at http://wiki.wireshark.org/Development/SNMP looks pretty daunting. Jaap Keuter wrote: > Hi, > > Sounds like a good plan. What do you think about the situation of SNMP? > > Thanx, > Jaap > > Gerald Combs wrote: >> Due to the amount

Re: [Wireshark-dev] Filtering using DHCP and SSDP throws error

2007-11-29 Thread Gerald Combs
Jim Young wrote: <[EMAIL PROTECTED]> 11/29/07 10:01 AM >>> >> Hi , >> >> On the wireshark GUI I have tried to filter using the keywords dhcp >> and ssdp for the DHCP and SSDP protocol but the wireshark throws an error >> message stating "dhcp" is not a protocol? >> Can someone suggest someth

[Wireshark-dev] Wireshark 0.99.7pre2 is now available

2007-11-29 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Wireshark 0.99.7pre2 is now available for testing. Source code and a Windows installer can be downloaded immediately from http://www.wireshark.org/download/prerelease/wireshark-0.99.7pre2.tar.gz http://www.wireshark.org/download/prerelease/wireshark-

Re: [Wireshark-dev] autogen.sh and svn

2007-11-30 Thread Gerald Combs
Adam Sulmicki wrote: > Also, I prefer to read the list on the web site, rather than clutter > my mailbox, but lately I'm getting this error: > > HTTP is just about the most godawful worst possible way to mirror this site > > I might have hit refersh a little bit often, but nothing like wget! > An

Re: [Wireshark-dev] Wireshark 0.99.7pre2 is now available

2007-11-30 Thread Gerald Combs
Ulf Lamping wrote: > Jim Young schrieb: >> I think autoscroll behavior was changed (augmented?). >> >> My observation is that auto-scrolling now stops if you scroll UP in the >> packet summary pane. You can restore auto-scrolling by simply scrolling >> to the bottom-most (i.e. most recent) item

Re: [Wireshark-dev] Windows buildbot failing on portableapps package

2007-12-06 Thread Gerald Combs
Maynard, Chris wrote: > The Windows buildbot appears to be missing the now required NSIS FindProcDLL > plugin. It can be obtained here: > http://nsis.sourceforge.net/FindProcDLL_plug-in (or here: > http://nsis.sourceforge.net/Find_Process_By_Name). > > Reference: http://www.wireshark.org/list

Re: [Wireshark-dev] new packet-usb-audio dissector?

2007-12-09 Thread Gerald Combs
Pascal Heude wrote: > One remark about the article : the link is given in the wireshark > website, but now the link is broken. The good one is the one above. > Can somespan tells the webmaster to update the link (in Bibliography, > the article from Ken Thompson) ? Fixed. Thanks! ___

[Wireshark-dev] Outstanding issues for 0.99.7

2007-12-11 Thread Gerald Combs
The 0.99.7 section in http://wiki.wireshark.org/Development/Roadmap lists two outstanding items for 0.99.7: - Add "PortableApps" (Windows USB stick) package to website - Items marked with {1} in the TODO list of Development/SNMP I'll work on the PortableApps updates in the next day or so. How

Re: [Wireshark-dev] Outstanding issues for 0.99.7

2007-12-14 Thread Gerald Combs
No one has made any noise about the outstanding SNMP items, so I'll probably release 0.99.7 on Monday. Gerald Combs wrote: > The 0.99.7 section in http://wiki.wireshark.org/Development/Roadmap lists two > outstanding items for 0.99.7: > > - Add "PortableApps" (Wi

Re: [Wireshark-dev] Please apply 23907 to 0.99.7 (array overflow)

2007-12-17 Thread Gerald Combs
Joerg Mayer wrote: > In case packet-erf.c is in 0.99.7 this patch should be applied. It is. I've copied the change over and restarted the build. 0.99.7 will have to be released tomorrow. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://w

[Wireshark-dev] Wireshark 0.99.7 is now available

2007-12-18 Thread Gerald Combs
I'm proud to announce the release of Wireshark 0.99.7. I'm also proud to announce Sharkfest '08, the first-ever Wireshark users and developers conference, and SharkNet, an enterprise maintenance and support program for Wireshark. Shameless Promotion Sharkfest '08 will be held March 31 to Apri

Re: [Wireshark-dev] tshark installed setuid root?

2007-12-19 Thread Gerald Combs
Joerg Mayer wrote: > On Tue, Dec 18, 2007 at 04:27:34PM -0500, Jeff Morriss wrote: >> Should tshark be installed setuid root if you use >> --enable-setuid-install ? I thought not but using that option will >> install both setuid root. (I thought I had played with the new privsep >> stuff but a

Re: [Wireshark-dev] Windows buildbot is failing on svn checkout.

2007-12-27 Thread Gerald Combs
Jim Young wrote: > Hello, > > Windows Buildbot Build #3732 failed to complete due to a problem apparently > while building the "portableapps package". > > Subsequent attempts by the Windows buildbot to build now fails svn checkout > with: > >> exceptions.OSError: [Errno 13] Permission denied

Re: [Wireshark-dev] Ubuntu buildbot looks unhappy

2008-01-10 Thread Gerald Combs
Jeff Morriss wrote: > The Ubuntu buildbot has been running "random packets" for a couple of > days now... (It's now 20 builds behind the others.) It's been restarted. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/m

[Wireshark-dev] Contract developer needed

2008-01-16 Thread Gerald Combs
We (CACE) have received a request for a contract developer to write a dissector plugin for Wireshark. If you're interested, please send a message to [EMAIL PROTECTED] ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/ma

Re: [Wireshark-dev] Win32 buildbot has problems: "permission denied"

2008-01-20 Thread Gerald Combs
Ulf Lamping wrote: > Hi! > > Seems that this is the root cause: > > File "c:\Python24\Lib\site-packages\buildbot\slave\commands.py", line 74, in > rmdirRecursive > rmdirRecursive(full_name) > File "c:\Python24\Lib\site-packages\buildbot\slave\commands.py", line 78, in > rmdirRecursive > os.rm

Re: [Wireshark-dev] Windows buildbot

2008-01-20 Thread Gerald Combs
Jaap Keuter wrote: > Hi Gerald, > > Could you give the Windows Buildbot a kick, it's failing the SVN > checkout of the build. Done. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-dev

Re: [Wireshark-dev] ip.addr != 10.0.0.1 (Guy Harris)

2008-01-29 Thread Gerald Combs
Sake Blok wrote: I think the idea of a pop-up explaining the way the operator "!=" works on fields with multiple occurences in one packet is a good way to educate people. But only if there is an option to "Don't show me this message again" :-) The attached patch warns the user about "!=" and "

Re: [Wireshark-dev] ip.addr != 10.0.0.1 (Guy Harris)

2008-01-31 Thread Gerald Combs
Stig Bjørlykke wrote: > 2008/1/30, Gerald Combs <[EMAIL PROTECTED] > <mailto:[EMAIL PROTECTED]>>: > > The attached patch warns the user about "!=" and "ne" by coloring > the filter > entry yellow and adding a message to the status b

[Wireshark-dev] Next releases (0.99.8 and 1.0) and versioning

2008-02-04 Thread Gerald Combs
I'd like to release Wireshark 0.99.8 in a couple of weeks, followed by a 1.0 on March 31 at Sharkfest. The tentative release dates are: Feb 18 - 0.99.8 pre1 Feb 25 - 0.99.8 final Mar 17 - 1.0 pre1 Mar 31 - 1.0 final The schedule above reflects a slight change to the versioning scheme

Re: [Wireshark-dev] [Wireshark-commits] rev 24295: /trunk/ /trunk/epan/dissectors/: packet-dcerpc-nt.c packet-sccp.c packet-sctp.c /trunk/wiretap/: 5views.c iseries.c wtap-int.h

2008-02-11 Thread Gerald Combs
Stephen Fisher wrote: > Gerald, > > What are the chances of getting the Sun C compiler instead of GCC on the > Solaris builtbot? We seem to be getting more and more reports of > Solaris build errors and warnings. I was hoping to upgrade the memory and hard drive in the Solaris buildbot in the

Re: [Wireshark-dev] ip.addr != 10.0.0.1 (Guy Harris)

2008-02-12 Thread Gerald Combs
Stephen Fisher wrote: > On Thu, Jan 31, 2008 at 11:52:11AM -0800, Gerald Combs wrote: >> Stig Bjørlykke wrote: >>> 2008/1/30, Gerald Combs <[EMAIL PROTECTED] >>> <mailto:[EMAIL PROTECTED]>>: >>> >>> The attached patch warns th

Re: [Wireshark-dev] rawshark.html has 4 copies of most of text ...

2008-02-16 Thread Gerald Combs
Bill Meier wrote: > at least on Linux after a make. Fixed. Thanks. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-dev

Re: [Wireshark-dev] New feature: custom columns

2008-02-18 Thread Gerald Combs
Stephen Fisher wrote: > On Mon, Feb 11, 2008 at 08:36:26PM -0700, Stephen Fisher wrote: > >> I have introduced a new feature [...] It lets you specify any display >> filter name as a column by choosing the Custom column type and putting >> the display filter name in the description. > > Gerald/

Re: [Wireshark-dev] [Wireshark-commits] rev 24378: /trunk-0.99.8/

2008-02-18 Thread Gerald Combs
The 0.99.8 trunk has been created, and 0.99.8pre1 should be out later this evening (PST) or tomorrow morning. If any commits after 24378 need to go into the release, please add them to the "Pending" section under 0.99.8 in http://wiki.wireshark.org/Development/Roadmap [EMAIL PROTECTED] wrote: >

[Wireshark-dev] Wireshark 0.99.8pre1 is now available

2008-02-18 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Wireshark 0.99.8pre1 is now available for testing. Windows installers and source code can be downloaded immediately from http://www.wireshark.org/download/prerelease/wireshark-setup-0.99.8pre1.exe http://www.wireshark.org/download/prerelease/wireshark

Re: [Wireshark-dev] Wireshark 0.99.8pre1 is now available

2008-02-19 Thread Gerald Combs
Jaap Keuter wrote: > Gerald Combs wrote: >> This release adds many bug fixes and new features. An in-progress list >> of changes can be found in the release notes at >> http://www.wireshark.org/docs/relnotes/wireshark-0.99.8.html . >> >> Please report any probl

[Wireshark-dev] Vint Cert to speak at Sharkfest

2008-02-19 Thread Gerald Combs
We are excited to announce that Dr. Vinton Cerf, PhD, Google Vice President and Chief Internet Evangelist will open day 2 of Sharkfest with a talk entitled "Non-discriminatory Network Service." Dr. Cerf is considered by many to be the father of the Internet. When he's not giving talks on matters th

Re: [Wireshark-dev] [Wireshark-users] build problem

2008-02-22 Thread Gerald Combs
Bill Meier wrote: > Two notes: > > 1. Due to a screwup on my part the log text is incorrect (long story). >The SVN 24416 log text "Fix typo in help text" should have been >"Fix compile errors if 'configure ... --without-pcap'" Fixed. > 2. There's still a problem compiling the separate p

[Wireshark-dev] Outstanding 0.99.8 issues

2008-02-25 Thread Gerald Combs
The 0.99.8 roadmap still has the following items in the pending queue: - Move over revisions 24465, 24466, and 24467 I'll take care of this tonight or tomorrow. - Update the Windows PCRE package Is there an up-to-date package available? If not, should we try to build our ow

Re: [Wireshark-dev] [Wireshark-commits] rev 24475: /trunk-0.99.8/ /trunk-0.99.8/docbook/: release-notes.xml /trunk-0.99.8/: configure.in

2008-02-26 Thread Gerald Combs
Fixed. Thanks! Jeff Morriss wrote: > Hi Gerald, > > Did you want to (also) copy 24471 (which fixes the SCTP crash) over? > Also the SCTP crash release notes seem to point to the SNMP bug. > > Regards, > -Jeff > > [EMAIL PROTECTED] wrote: >> http://anonsvn.wireshark.org/viewvc/viewvc.cgi?view=r

Re: [Wireshark-dev] Outstanding 0.99.8 issues

2008-02-26 Thread Gerald Combs
Bill Meier wrote: >> I'd like to release 0.99.8 tomorrow or Wednesday. > > I've updated the INSTALL file somewhat to match current Wireshark. > However, I think there's a bit more updating needed as to the use of > setuid & root privileges & etc. > > I removed some comments about "don't use set

[Wireshark-dev] Wireshark 0.99.8 is now available

2008-02-27 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I'm proud to announce the release of Wireshark 0.99.8. Sharkfest Reminder ~ Sharkfest '08 will be held March 31 to April 2 in Los Altos Hills, ~ CA. At Sharkfest you'll have the opportunity to meet many of the ~ people behind Wireshark and WinP

Re: [Wireshark-dev] Release process / Compiling with -Werror on 0.99.9

2008-03-03 Thread Gerald Combs
Stephen Fisher wrote: > Gerald, > > If I remember correctly, you reverse the option of compiling with > -Werror on Unix when releasing Wireshark. Did you change it back to > default to error out on warnings in the 0.99.9 trunk? The default setting for "warnings-as-errors" was set to "no" just

Re: [Wireshark-dev] changes between wireshark 0.99.6a and wireshark 0.99.7

2008-03-05 Thread Gerald Combs
Jeff Morriss wrote: > > A Verma wrote: >> >> Hi >> How to. find out what all changes were made to which all files between >> wireshark 0.99.6a and wireshark 0.99.7 versions ? >> I am interested in the plugings code specifically. > > Download the 0.99.6a source. > Download the 0.99.7 source. >

Re: [Wireshark-dev] Using Wireshark via sockets or pipes on Win32

2008-03-06 Thread Gerald Combs
James Gilsinn wrote: > What I am looking for is a way to have a way to filter a capture file > for specific packets and then pull particular pieces of data out of > those packets. The data that I need to pull out is not always what is > displayed in the "single-line" packet display that Wiresha

[Wireshark-dev] OS X packaging

2008-03-07 Thread Gerald Combs
I had a look at the packaging environment that Inkscape uses for OS X, and it turned out to be easy to adapt for Wireshark. I've attached the patch to bug 2341 if anyone wants to play with it. A test dmg can be downloaded from http://www.wireshark.org/~gerald/Wireshark%200.99.9%20Intel.dmg. It has

[Wireshark-dev] 1.0pre1 reminder

2008-03-11 Thread Gerald Combs
Just a reminder -- I plan on branching off the 1.0 trunk and releasing 1.0pre1 this upcoming Monday (the 17th). The final release is still planned for the 31st. ___ Wireshark-dev mailing list Wireshark-dev@wireshark.org http://www.wireshark.org/mailman/l

Re: [Wireshark-dev] WS Roadmap question

2008-03-14 Thread Gerald Combs
Peter Fuller wrote: > > I'm studying wireshark and hope to contribute to the project, but not > sure where yet. Still learning some > of the guts probably will be for awhile.I was readin the > roadmap for Beyond 1.0 and saw" > > * Add privilege separation for dissection. > >What d

Re: [Wireshark-dev] [Wireshark-commits] rev 24675: /trunk-1.0/

2008-03-17 Thread Gerald Combs
The 1.0 trunk official. 1.0pre1 should be out this evening (PDT) or tomorrow morning. There appears to be a problem with the gmodule DLL in recent releases of GLib. I'll build the Windows installers by hand, substituting libgmodule-2.0-0.dll from GLib 2.14.5, which is the latest release I've found

[Wireshark-dev] Wireshark 1.0.0pre1 is now available

2008-03-18 Thread Gerald Combs
Wireshark 1.0.0pre1 is now available for testing. Installers for Windows, OS X, and source code can be downloaded immediately from http://www.wireshark.org/download/prerelease/wireshark-setup-1.0.0pre1.exe http://www.wireshark.org/download/prerelease/wireshark-1.0.0pre1.u3p http://www.wireshark.or

Re: [Wireshark-dev] [Wireshark-commits] rev 24640: /trunk/ /trunk/packaging/macosx/ChmodBPF/: ChmodBPF README.macosx StartupParameters.plist /trunk/packaging/macosx/ScriptExec/English.lproj/: InfoPlis

2008-03-18 Thread Gerald Combs
Stig Bjørlykke wrote: > I had a look at the OSX packaging and found some errors while trying to > build a dmg: > > * osx-build.sh is calling osx-app.sh with argument "-b" instead of > "-bp", which fails. The attached patch fixes this. > > * osx-dmg.sh creates "Wireshark 1.0.0 Intel.dmg" while os

Re: [Wireshark-dev] Wireshark 1.0.0pre1 is now available

2008-03-18 Thread Gerald Combs
Ulf Lamping wrote: > Gerald Combs schrieb: >> Wireshark 1.0.0pre1 is now available for testing. Installers for Windows, OS >> X, >> and source code can be downloaded immediately from >> > The about box on the WinXp version says: > > Version 1.0.0pre1 (SVN

Re: [Wireshark-dev] [Wireshark-commits] rev 24675: /trunk-1.0/

2008-03-18 Thread Gerald Combs
Sake Blok wrote: > On Mon, Mar 17, 2008 at 03:58:47PM -0700, Gerald Combs wrote: >> The 1.0 trunk official. 1.0pre1 should be out this evening (PDT) or tomorrow >> morning. There appears to be a problem with the gmodule DLL in recent >> releases >> of GLib. I'll

Re: [Wireshark-dev] Wireshark.org down?

2008-03-20 Thread Gerald Combs
The server was down for about 80 minutes earlier this morning. According to our hosting provider, there was a problem with the disk array. Barco You wrote: > Everything goes well from Germany! > > On Fri, Mar 21, 2008 at 2:17 AM, Graham Bloice > <[EMAIL PROTECTED] > wrot

[Wireshark-dev] Default stream save format

2008-03-25 Thread Gerald Combs
Are there any objections to making the default save format for the stream window "Raw?" The current default format is "ASCII," which in our case means "save the data shown in the stream window after GTK and Wireshark have had a chance to mangle it." This seems to be tripping people up.

Re: [Wireshark-dev] Not so important change for release version

2008-03-29 Thread Gerald Combs
Jaap Keuter wrote: > Hi Gerald, > > I just remembered that the pre-release flags are still in the Win32 resource > file templates of the plugins. I took them out with revision 24757. Then I > figured that the programs itself had resource file templates as well, so > I've upgraded those in revision

[Wireshark-dev] Wireshark 1.0 is now available

2008-03-31 Thread Gerald Combs
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I'm proud to announce the release of Wireshark 1.0. This is the culmination of nearly ten years of hard work by a team of brilliant and talented developers. It is an honor to be able to work with these people. On behalf of the development team, I woul

Re: [Wireshark-dev] Error in FAQ File

2008-04-03 Thread Gerald Combs
Fixed. Thanks! Jaap Keuter wrote: > Hi, > > Normally we would request you to open a bug at bugs.wireshark.org but I > don't think Gerald does mind. > > Thanx, > Jaap > > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On Behalf Of Volker Sonnak > Sent: 2008-Apr

[Wireshark-dev] Sharkfest roadmap sessions summary

2008-04-04 Thread Gerald Combs
This past Monday and Wednesday at Sharkfest we had a couple of sessions where we went over what should be next for Wireshark. The discussion was lively each day, with users and developers contributing lots of great ideas. A slightly-edited version of the whiteboard contents from each session is inc

Re: [Wireshark-dev] Sharkfest roadmap sessions summary

2008-04-04 Thread Gerald Combs
Eloy Paris wrote: > Hello, > > On Fri, Apr 04, 2008 at 10:50:14AM -0700, Gerald Combs wrote: > >> * - Rename Epan >> * - Checksum + chimney handling >> * - Drop GTK1 > > Anything special about these items that are marked with an asterisk? They were things p

Re: [Wireshark-dev] [Wireshark-commits] rev 24770: /trunk/packaging/ /trunk/packaging/nsis/: Makefile.nmake wireshark.nsi /trunk/packaging/portableapps/win32/: makenmake.pl /trunk/packaging/u3/win32/:

2008-04-04 Thread Gerald Combs
[ I'm replying to -dev instead of Stephen directly since this warrants a more detailed and public explanation. ] We have indeed decided to drop GTK1 support*. The main reasons are: - GTK1 has been unsupported by the GTK+ team for a long time now. The fact that we've been able to use it up t

Re: [Wireshark-dev] Sharkfest roadmap sessions summary

2008-04-04 Thread Gerald Combs
Jeff Morriss wrote: >> * - Drop GTK1 > > Does that mean dropping it from Windows or from everywhere (and removing > all the GTK_MAJOR_VERSION < 2 code)? Yup. > (I suppose this means I'm going to have to see if, after removing > GTK-1.2, my legacy systems will have room for GTK-2 plus its rathe

Re: [Wireshark-dev] [Wireshark-commits] rev 24770: /trunk/packaging/ /trunk/packaging/nsis/: Makefile.nmake wireshark.nsi /trunk/packaging/portableapps/win32/: makenmake.pl /trunk/packaging/u3/win32/:

2008-04-05 Thread Gerald Combs
Stephen Fisher wrote: > On Sat, Apr 05, 2008 at 11:25:58AM +1100, Andrew Hood wrote: > >> Does this mean that those of us who have no choice but to run GTK1 >> versions because Remote Desktop can only be relied on to supply 8 bit >> colour will stop getting security related fixes? > > I certain

<    4   5   6   7   8   9   10   11   12   13   >