Re: [Wireshark-dev] nflog in qt and gtk

2015-01-26 Thread Dario Lombardo
Some updates on this. When running in QT, 2 dumcaps are created, one for stats and one for capture. When capturing on nflog, the child process require the parent to be dead (its fd are released). I tried to implement a solution that, in case the interface starts with nf, tries again up to 10

Re: [Wireshark-dev] nflog in qt and gtk

2015-01-23 Thread Dario Lombardo
Hi Peter I opened a bug on bugzilla for that https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=10886 and I tried to figure out how the solution can be implemented. You can find my WIP here https://code.wireshark.org/review/6757 If you or someone else want to work on it, you're welcome.

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-23 Thread Dario Lombardo
Kill statistics before starting the capture? Sounds fine to me, though I am not sure whether it has other side-effects. The Capture - Options dialog is another place where these stats are visible. What about filing a bug? Do you think it would be useful? Or is there anyone taking care of

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-19 Thread Dario Lombardo
On Thu, Dec 18, 2014 at 4:29 PM, Peter Wu pe...@lekensteyn.nl wrote: You should not run Wireshark with sudo, instead set the appropriate privileges on the dumpcap binary as described at http://wiki.wireshark.org/CaptureSetup/CapturePrivileges Generally speaking, you are right, and it's waht

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-19 Thread Peter Wu
On Friday 19 December 2014 11:08:01 Dario Lombardo wrote: On Thu, Dec 18, 2014 at 4:29 PM, Peter Wu pe...@lekensteyn.nl wrote: You should not run Wireshark with sudo, instead set the appropriate privileges on the dumpcap binary as described at

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-19 Thread Peter Wu
On Friday 19 December 2014 11:55:47 Dario Lombardo wrote: On Fri, Dec 19, 2014 at 11:44 AM, Peter Wu pe...@lekensteyn.nl wrote: Nope, it won't work at the moment. The problem is that NFLOG can only be opened by one user which is a kernel limitation. From net/netfilter/nfnetlink_log.c:

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-19 Thread Dario Lombardo
On Fri, Dec 19, 2014 at 12:35 PM, Peter Wu pe...@lekensteyn.nl wrote: The Capture - Options dialog is another place where these stats are visible. Is it visible during capture? ___ Sent via:Wireshark-dev mailing list

Re: [Wireshark-dev] nflog in qt and gtk

2014-12-19 Thread Peter Wu
On Friday 19 December 2014 17:07:20 Dario Lombardo wrote: On Fri, Dec 19, 2014 at 12:35 PM, Peter Wu pe...@lekensteyn.nl wrote: The Capture - Options dialog is another place where these stats are visible. Is it visible during capture? No, it is not visible during capture. The options