Hi,

>From old conversation on -users :

Check the VLAN preferences. There is an entry for the 802.1QinQ Ethertype,
which by default is 9100.

http://www.wireshark.org/lists/wireshark-users/200801/msg00144.html


On Wed, Feb 12, 2014 at 5:06 PM, Florian Lohoff <[email protected]> wrote:

>
> Hi,
>
> attached a trace of a packet beeing tripple tagged. This is not decoded
> by wireshark although all ethertypes are well defined (although broken
> in this setup).
>
> I know the VLAN decoder has a field to enter the QinQ ethertype for
> following 802.1q tags but that should rather be a list which should
> contain some well known.
>
> 0x88a8  -> 802.1ad outer tag
> 0x9100  -> Old draft - well known to be "another tag will follow"
> 0x9200  -> "
> 0x9300  -> "
> 0x8100  -> 802.1q
>
> Flo
> --
> Florian Lohoff                                                 [email protected]
>
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.4.10 (GNU/Linux)
>
> iQIVAwUBUvucIpDdQSDLCfIvAQgudw//VBvVKcpd78gPUk7OD28utZlNqSVe/Ki7
> hn9IjSBahsSRpOCquGKsjwejCvxOQ0Z51uDUenNWBThANIyBdfzBG5Dfq8zmNVVN
> ffGuDiID9OEZ2QrUH5X+wIEQTFVAsOb3/v9EeQiC6ybMHNiy0iP4JHE2aYCtcC3k
> PPLilJIeIoNmQKfrHy5XeUyxW/Q+oWrEHq0ooQ2Gs3Xs/blbnwMyjBemrMuA6zSm
> pT0s+RYEcRTNoyjT3pygpQRIf1+W9Rql5Jn+Ycvj6OMzMfkRzJJ+qN8GGNChzm+X
> yrA1E774en3VsDU14OP/5aGJ//OAZdmeiBcUE3COwmpjUyxHM6NqDetjkQ4hlocQ
> yetKPV+vJ5/J6LNQNCrQg908jdLAX1izE662CzBHsmH4iiEkwUZWH7M5O9nKbbvi
> iFdd83s0IGg42FE4Iqx9msig3MD/rGrTbLm9guXoKSmn55SoipJorlUH1Lkbk4Bj
> qK79FaPCoG7C+Cmov6HLG76Ov57D9yg3UAN/tYE6Dk0GEhBxcF+Q1LoW1IS/3QvN
> TlwHYlqUX+c0zp/HIWzTqchhuHSkJdLFYeoxucaqXEz+WrIOGEl6/mPh6lHwMDoI
> 4LNEsgm1E6ruIrmBa6YP9PrN+dAdnGbBunQZtvPZHpuvyG9MH4uZPuwzF3mjtJ0N
> 0Dn4vYT4Rhc=
> =nnKB
> -----END PGP SIGNATURE-----
>
> ___________________________________________________________________________
> Sent via:    Wireshark-dev mailing list <[email protected]>
> Archives:    http://www.wireshark.org/lists/wireshark-dev
> Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
>              mailto:[email protected]
> ?subject=unsubscribe
>
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <[email protected]>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:[email protected]?subject=unsubscribe

Reply via email to