Hi, there are lot of examples for capture filtering at http://wiki.wireshark.org/CaptureFilters but unfortunately none of them is referred to usb. Shall you give me an example, please?
asked 18 Aug '14, 10:41
edited 18 Aug '14, 10:42
You can't use a capture filter on USB data, as that's not implemented by libpcap (and/or usbmon), the capture library of Wireshark. The reason: libpcap uses BPF (Berkely Packet Filter) to implement capture filters and that works mainly for network protocols. So, no USB data capture filtering without a a massive rewrite of libpcap.
As a result, you can use display filters for USB traffic in Wireshark and/or tshark, but not capture filters.
answered 25 Aug '14, 16:04
Kurt Knochner ♦