Bug ID: 14418
           Summary: Add ability to tshark to read a file list apply a
                    filter and write matchng packets to a new file.
           Product: Wireshark
           Version: 2.5.x (Experimental)
          Hardware: All
                OS: All
            Status: UNCONFIRMED
          Severity: Enhancement
          Priority: Low
         Component: TShark
  Target Milestone: ---

Build Information:
Paste the COMPLETE build information from "Help->About Wireshark", "wireshark
-v", or "tshark -v".
If you use dumpcap/tshark to write to file and create a new file at specified
time or size it would be useful to use tshark on that file set to filter on all
those files and write the packets passing the display filter to a new file
or a new set of files of a predefined size.

For instance we often create files of 200 - 300 Mb of all IMS traffic during
tests. Then if we need to look for say failed calls we need to go back to those
files and find the files created at that time and filter out the relevant
packets and possibly splice the resulting files together again.

You are receiving this mail because:
You are watching all bug changes.
Sent via:    Wireshark-bugs mailing list <>

Reply via email to