Hi - My wireshark shows this information in the info field http://www.jcitservices.plus.com/logs/Capture2.PNG how can I get the information field to show this extra detail? http://www.jcitservices.plus.com/logs/Capture1.PNG Thanks in advance asked 31 Oct '14, 00:50 wratty |
One Answer:
By using a different verion of Wireshark. 1.12.x seems to only show the brief output, while 1.10.9 shows the extended output. Tested with the sample capture files linked in the UNISTIM wiki. Regards answered 31 Oct '14, 01:38 Kurt Knochner ♦ edited 31 Oct '14, 02:44 showing 5 of 22 show 17 more comments |
Hi Kurt,
Thanks for the quick reply. I will try that.
fantascio!!
:D
Hmm the earliest I can find to download is 1.10.10 which as the same issue. Anyone know where I can get 1.10.9 from?
If you think there is a regression in 1.12.x open a bug report attaching a small capture to verify with.
Then try it with 1.10.10 ;-)
Hi - I have tried with 1.10.10 and the same thing happens. limited info field population. I will open a bug case now, but i'm up against it with some system errors i am trying to debug.
maybe it's related to your capture file. Can you please try the following file with 1.10.10?
I have tried 1.10.10 but the same issue applies.
The two screen captures used earlier in the opening post as using the same capture. One is on my wireshark, the other is the vendor on his wireshark, so the only difference is the version, or perhaps who he has his set up. No one seems to know of a setting to turn it on and I have tried to find if there is an "extended info" setting anywhere.
OK - I found the 1.10.9 version in the wireshark archive and it does the same for me, only limited info in the info window, I also tried using the test pcap file as suggestion above - so it is not the capture I have. so it must be a local setting.
ARGGGHHH help! :'-(
i've now tried 32b and 64b versions. still the same.
Perhaps the vendor has built an enhanced version and not submitted the code to wireshark...
I don't think so as Kurt said up there...^^^ he tested it.
I just checked the source code of unistim plugin and the display of this extended info is not part of the official Wireshark (neither in 1.10.9 or in 1.12.1). It means that your vendor modified the source code to add it. BTW I do not see any different output between both versions when using the captured pointed by Kurt (which matches my analysis of the source code).
OK thanks guys - I wish I knew how they done it.
Oops. Apparently I messed up two capture files :-( As @Pascal Quantin said, there is no difference between 1.10.x and 1.12.x.
Sorry for the confusion!
Ask them! As Wireshark is an open source project, it would violate the GPL to withhold those changes, as soon as they distribute the modified Wireshark version to their customers!
Who is that vendor?
Regards
Kurt
I have asked the vendor if they have a special plugin/code for this
Who is the vendor?
Hi, ok it took me a while but they have given me this plugin...
http://www.jcitservices.plus.com/logs/unistim-120-v400-public.zip
I am yet to try it, as I am not on the correct PC at the mo.
Hmm. They should also be providing the sources for that binary as Wireshark is licenced under the GPL.
Again: Who is the vendor? :-))
The vendor is Avaya