[Wireshark-users] wireshark and wifi

2007-04-27 Thread Krekan
Hi all, I need an advice which type or what brand of wifi adapter to buy to use in wireshark. For normal sniffing normal adapter like I have in my notebook (broadcom811B/G) will do but from the moment I want to do something more sophisticated like put it in to monitor mode (required for

[Wireshark-users] Wireshark and Excel/OpenOffice

2007-04-27 Thread luke peters
ximena cardozo, That is absolutly fantstic. You have no idea how much this has helped me with my research project. Many thanks again Luke _ Need a break? Find your escape route with Live Search Maps.

[Wireshark-users] DECNET pcap file

2007-04-27 Thread blue caddy
Does anyone have a sample PCAP file that contains typical DECNET traffic? thanks! __ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com ___

[Wireshark-users] Various PCAP files needed

2007-04-27 Thread blue caddy
I'm looking for PCAP examples of the following protocols: Appletalk Decnet DLSW Netbios/Netbeui Etherchannel VTP BOOTP Any help is greatly appreciated! __ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around

Re: [Wireshark-users] Is it possible to decode the CDMA IOS5 layer overSUA?

2007-04-27 Thread Anders Broman \(AL/EAB\)
Hi, This may be a problem with the way Wireshak sets up associations for SCCP connections the same funktionallity is not made for SUA I think can you share a small sample file showing the problem? Regards Anders Från: [EMAIL PROTECTED] genom Yang Zhe Skickat:

Re: [Wireshark-users] Is it possible to decode the CDMA IOS5 layer over SUA?

2007-04-27 Thread Luis Ontanon
I'm not sure about it, but I do not think that 0.99.5 can if it is connection oriented. However I have made some changes that should have made it possible after 0.99.5 was released. Can you download the latest installer from http://www.wireshark.org/download/automated/ and test whether or not it

Re: [Wireshark-users] Megaco/H.248 pcap files

2007-04-27 Thread Luis Ontanon
look in bugzilla.wireshark.org there are some files containing either BER or Text encoded H248 posted to various bugs there. On 4/27/07, Arnaldo Maciel Bellato [EMAIL PROTECTED] wrote: Hi, I need some example of megaco.pcap but I didn't find any one on wireshark web site. Some one

Re: [Wireshark-users] Megaco/H.248 pcap files

2007-04-27 Thread Martin Mathieson
It looks like there is also an example on www.techtraces.com. Martin On 4/27/07, Luis Ontanon [EMAIL PROTECTED] wrote: look in bugzilla.wireshark.org there are some files containing either BER or Text encoded H248 posted to various bugs there. On 4/27/07, Arnaldo Maciel Bellato [EMAIL

[Wireshark-users] RES: Megaco/H.248 pcap files

2007-04-27 Thread Arnaldo Maciel Bellato
Martin and Luis, Thanks by the information. It does will be very helpful. Arnaldo -Mensagem original- De: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Em nome de Martin Mathieson Enviada em: sexta-feira, 27 de abril de 2007 11:43 Para: Community support list for Wireshark Assunto: Re:

Re: [Wireshark-users] Is it possible to decode the CDMA IOS5 layerover SUA?

2007-04-27 Thread Anders Broman \(AL/EAB\)
Hi, I haven't looked but should more code be shared between the SUA and SCCP dissector in order to not implement the same stuff twice? Regards Anders Från: [EMAIL PROTECTED] genom Luis Ontanon Skickat: fr 2007-04-27 16:24 Till: Community support list for

Re: [Wireshark-users] Is it possible to decode the CDMA IOS5 layerover SUA?

2007-04-27 Thread Luis Ontanon
I think we got almost all we can share (connection tracing), while (like for most SIGTRAN UAs) the information contained is almost the same the encoding is way different. On 4/27/07, Anders Broman (AL/EAB) [EMAIL PROTECTED] wrote: Hi, I haven't looked but should more code be shared between the

[Wireshark-users] Appletalk PCAP example needed

2007-04-27 Thread blue caddy
Does anyone have a sample PCAP file of some typical Appletalk traffic? thanks! __ Do You Yahoo!? Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com ___ Wireshark-users

Re: [Wireshark-users] Writing/sharing dissectors

2007-04-27 Thread Jaap Keuter
Hi, Better use the skeleton code found in chapter 1.2 of the README.developer file in /doc. Also name the dissector sourcefile packet-foo.c i.s.o. plugin.c, because that name is already used for the autogenerated plugin adapter code. Sharing the executable dissector is indeed as simple as

Re: [Wireshark-users] Wireshark OSX

2007-04-27 Thread Stephen Fisher
On Fri, Apr 27, 2007 at 12:10:45AM +1000, benny wrote: Wondering if anyone knew how to uninstall wireshark for macintel osx through terminal or how to safley remove the program , i have scoured the wireshark homepage but found nothing on this How did you install it? If you did make install

Re: [Wireshark-users] Appletalk PCAP example needed

2007-04-27 Thread Randy . Grein
Um, what do you mean by 'typical'? Are you looking for original Appletalk, Appletalk over ethernet, or Appletalk over IP? Randy Grein Network Engineer blue caddy [EMAIL PROTECTED] Sent by: [EMAIL PROTECTED] 04/27/2007 07:02 AM Please respond to Community support list for Wireshark

Re: [Wireshark-users] Appletalk PCAP example needed

2007-04-27 Thread blue caddy
Hi Randy, I'm most interested in last two (Appletalk over Ether and Appletalk over IP over Ether). thanks! - Original Message From: [EMAIL PROTECTED] [EMAIL PROTECTED] To: Community support list for Wireshark wireshark-users@wireshark.org Sent: Friday, April 27, 2007 2:41:27 PM