This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Getting detailed 5-tuple flow information

0

I am trying to analyse a file containing packets captured using tcpdump. I first want to categorize the packets into flows using 5-tuple. Then I need to get the size and inter-arrival time of each packet in each flow. I tried Conversation list in wireshark but it gives only the number of packets in the flow not information about each packet in the flow. Any suggestion on how to proceed? Thank you

asked 17 Apr '12, 01:52

Tesse's gravatar image

Tesse
1111
accept rate: 0%

Thank you guys..... I just solved it

(20 Apr '12, 09:41) Tesse
1

I converted your response to a comment as it didn't actually answer the question. If you do have the answer please post it for the benefit of all the other site users.

(20 Apr '12, 12:11) grahamb ♦

Hi Tesse, I have your same problem. can you please tell how you solved it?

(31 Oct '12, 18:15) hy2012