Hi,
or you could have a look at the pcap source code to see, how pcap writes a
packet to a file ...

- alex

-----Ursprungliche Nachricht-----
Von: Jason Copeland [mailto:[EMAIL PROTECTED]
Gesendet: Donnerstag, 27. Februar 2003 18:31
An: [EMAIL PROTECTED]
Betreff: RE: [WinPcap-users] How to read binary files


> So do you know what is the binary format use to code the
> capture ? How many bytes are used to code the timestamp ? how
> the timestamp is coded ? How many bites are used to code each
> part of the ip header ?

You could spend some time looking at Ethereal or similar program
and just look at the packets and the data structure.

You could also spend some time on http://www.protocols.com/
to find out the structures.



==================================================================
 This is the WinPcap users list. It is archived at
 http://www.mail-archive.com/[EMAIL PROTECTED]/

 To unsubscribe use
 mailto: [EMAIL PROTECTED]
==================================================================



==================================================================
 This is the WinPcap users list. It is archived at
 http://www.mail-archive.com/[EMAIL PROTECTED]/

 To unsubscribe use 
 mailto: [EMAIL PROTECTED]
==================================================================

Reply via email to