This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Hello!

I've set up a VoIP call over IPv6 and I'm trying to capture it with wireshark (very basic live capture, no filters applied, just clicked on the right interface) but I can't see any SIP packets.

The call is between 2 machines and the sniffer works on a 3rd separate one - they are all in the same local network.

If I switch to IPv4 I can capture the call. Is this an IPv6 security feature or a wireshark bug ?

Thanks !

J.

asked 20 Aug '14, 13:04

qub's gravatar image

qub
1111
accept rate: 0%

1

Wireshark should capture the packets whether it's IPv4 or IPv6, especially with no filters applied.

Assuming it's not confidential, could you upload the trace file when IPv6 is attempted for the SIP call and post the link (https://appliance.cloudshark.org/upload/ )?

Also, how is the third (capturing) machine receiving the data stream? Is the switch in the middle doing port-mirroring, and what is the logic controlling that (eg: one obvious cause would be if you were forwarding to the analyser based on IPv4 subnet range, preventing the IPv6 traffic from reaching the analyzer).

(20 Aug '14, 19:17) Quadratic
Be the first one to answer this question!
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×139
×109
×51

question asked: 20 Aug '14, 13:04

question was seen: 1,732 times

last updated: 20 Aug '14, 19:17

p​o​w​e​r​e​d by O​S​Q​A