This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Wireshark automatically decode the packets if they are sent on port 161. Is there a way to configure Wireshark to do the decoding if packets are sent to a different port? I have a non responsive device that is supposedly using SNMP messages on port 300. I would love to have access to the decoded payload when I send my commands to port 300. TIA, Eddie

asked 18 Jul '14, 09:38

Eddie88's gravatar image

Eddie88
11113
accept rate: 0%


Right click a packet, Choose "Decode As ..", select the transport tab and the appropriate port in the drop list (depends on whether you picked an snmp query or response) and then choose SNMP in the protocol list (you can select an entry in the list and type s and then n then m to get there easily). Click Close. Job done.

permanent link

answered 18 Jul '14, 09:50

grahamb's gravatar image

grahamb ♦
19.8k330206
accept rate: 22%

Thanks, that was really easy. Learned something new!

Cheers, Eddie

(18 Jul '14, 09:55) Eddie88

Normally you accept a helpful answer by clicking the checkmark icon next to the answer rather than giving away your points. I've awarded yoiur points back to you. See the FAQ for more info.

(18 Jul '14, 13:44) grahamb ♦
Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×69
×43
×15
×1

question asked: 18 Jul '14, 09:38

question was seen: 3,143 times

last updated: 18 Jul '14, 13:45

p​o​w​e​r​e​d by O​S​Q​A