Age | Commit message (Collapse) | Author | Files | Lines |
|
ethereal.com -> wireshark.org
mailing lists and addresses
ETHEREAL -> WIRESHARK
Man pages
Automake/Autoconf names
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18271 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18268 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18230 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
- Many DCT2000 protocols can be embedded within an IP primitive
message. Add a heuristic to see if we can find the protocol payload
within in IP primitive message, and look for an ethereal dissector
matching the DCT2000 protocol name (this is useful for simple protocol
testing where no physical links are involved)
- Make some more of these protocols (diameter, http, mgcp) findable by name
- Adds protocol 'variant' number to stub and dissector
- Break the duplicated writing of the stub header out into a separate
function
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18212 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18206 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18197 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18188 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
that.
It also doesn't hae <glib/gprintf.h>, so use that only for GLib 2.0 and
later.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18169 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
That requires that we define G_GINT64_MODIFIER ourselves if glib.h
doesn't define it for us, as that's what should be used to print 64-bit
integral values in any calls that use any of the GLib printf functions
(directly or indirectly).
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18154 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
format but still useful for dissecting arbitrary BER/DER ASN.1.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@18110 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
This patch should hopefully remove any possible buffer overflows in
parse_line() as reported by the current Coverity scan. I'm not sure
that the error it currently reports is valid (I think its confused by
supposing that a condition that is being tested can be true, whereas it
can't...), but this patch fixes a number of potential problems remaining
in the function.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17979 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17968 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Fix coverity bugs.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17909 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
utilization, in units of .1%.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17901 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
These patches:
- fix the bounds errors reported by coverity in bug 879
- fix a couple of other potential bounds errors (length checking 1st & 2nd lines in file)
- reorder catapult_dct2000_phdr so that normal protocol pseudo-header info is at the start. This means that the stub dissector can avoid the nasty
(overlapped) memcpy
- a little whitespace fixing
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17886 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
ugly printouts for "editcap -T".
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17873 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Get rid of some unnecessary casts.
Multiply seconds by 10^9, not 10^6, to get nanoseconds.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17872 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Advertise nanosecond resolution.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17871 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Put the code to read the packet header and the packet data into routines
(which also fixes some places where observer_seek_read() was using the
sequential file handle rather than the random file handle), make the
packet header reader skip over the TLVs,
Do some additional sanity checking.
Wiretap supports nanosecond resolution; provide nanosecond resolution
time stamps.
Rename some structure members to match their purpose (they're TLV
counts, not flags).
Remove the TLV header from the TLV structures (and eliminate TLV
structures if we don't have the contents or they're just a string); if
we process them, we'll probably end up reading the header and data
separately.
Add some information about some of the TLVs in expert information packets.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17870 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
I have taken a look at the trace myself and calculated the TpS to be
20000000.0 for this particular trace. If I also discard the start_timestamp
like it has been done for other versions of the netxray format, then I get
the proper results.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17869 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Please find a patch to catapult_dct2000.c:
- doesn't use g_hash_table_new_full(), which is missing from earlier versions of glib
- fixed a couple of memory leaks
- hopefully cast away a few warnings I saw on the fedora and solaris buildbot logs
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17867 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17866 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17863 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
patch and new files provide support for Catapult DCT2000
.out files to wiretap and ethereal.
This wiretap support (catapult_dct2000.c+h) appends a short header to
each packet giving some context, and a corresponding ethereal dissector
(packet-catapult-dct2000.c) parses this before passing the real payload
onto an existing ethereal dissector (for ethernet, ip, lapd, ppp,
frame-relay,...).
For now, there is only support for saving dct2000 files in their own
format, although I may add support for converting between dct2000 and
libpcap later.
updated version of these files and patch, now with support
for MTP2. Olivier's trace used the ANSI variant - the MTP2 and MTP3
decode fine with the right preferences set (although the ISUP dissector
reports a reserved/retired message type).
Witha a change to NOT to declare gboolean catapult_dct2000_board_ports_only;
as extern as MSVC choked on it.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17862 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17861 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
wiretap/README.developer
- the referenced default seek_read function doesn't exist now
wiretap/wtap.c
- a "hole" in encap_table was causing the wrong encap value for later
types to be looked up (by name)
mergecap.c
- fix a couple of program name copy+paste errors from editcap.c
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17765 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Coverity bug 148
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17756 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
> I've attached a fix that cleans up this code, actually since my last
> update of this module the particular call in question was fairly
> redundant so I just went ahead and removed it and updated the constant
> that specifies the maximum possible line length instead.
>
> Thanks for bring this to my attention.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17737 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
ID. Fix up whitespace.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17732 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Following my last submitted patch I did some further investigation on the different types of iSeries Comms Traces, although the field formats are constant, things such as page throws and line spacing vary depending on the tool used to pull the trace form the iSeries spool.
This patch should better handle the different formats and more importantly exit in a graceful manner if an unknown format is encountered.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17699 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Attached is a fix that addresses a problem reading certain IBM iSeries
Communications traces.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17655 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
(Coverity finds just one at a time...)
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17580 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17556 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
when comparing index against array size.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17521 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
an off by one error (> vs >= in bounds check).
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17520 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
The attached patch adds support for LAPD frames captured using vISDN thru
libpcap. The support has already been included in libpcap.
The patch adds a new wiretap encapsulation, the necessary glue to decode
SLL-encapsulated frames, and some minor change in the LAPD dissector in order
to support the remote-to-remote frames captured on the ISDN E-Channel.
Please apply ethereal-encap-table.diff before, as it fixes a misalignment in
the encapsulation names table.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17450 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17365 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
least try to flush it
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17326 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Sniffer V2 format capture files with captyp=5, timeunit=0.
The ticks_per_sec for this case apparently is 1e6.
Bill Meier
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@17019 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
I don't know if this is the right way to fix it, but it seems at least better than before
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16971 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
tethereal internally converted the stdout capture filename "-" into "" which doesn't make any real sense and only complicated things.
To make things even more confusing, wiretap expected "" for dump output and "-" for offline reading ...
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16962 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
able to write capture files to stdout using -w -
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16958 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
ordering (not the other way round)
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16925 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16857 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
aren't sane, rather than requiring them *all* to have invalid values.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16610 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Add Support for reading of IBM iSeries (AS/400) Comms traces
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16588 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16492 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
Update the big comment to reflect current reality.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16453 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
was that file_util.h wasn't in the distribution tarball, so it couldn't
be included - it handles including <sys/stat.h>.
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16423 f5534014-38df-0310-8fa8-9805f1628bb7
|
|
git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@16422 f5534014-38df-0310-8fa8-9805f1628bb7
|