Hello, Until now, I have used wireshark 1.99.5 and it can recognise http2 traffic, but now I have updated to 1.99.7 and I need to actívate it with Analyze/Decode As option. Why do I need it?, what did it change? And I want to use it with tshark is there any command line option for telling it Decode as http2? My captures files are done with last nghttp server and client and RFC is closed and when 1.99.5 version was published until 1.99.7 version nothing respect to frames structure has changed Best regards This question is marked "community wiki". asked 02 Jul '15, 01:51 lespla |
2 Answers:
See my answer to a similar question:
Regards answered 06 Jul '15, 16:37 Kurt Knochner ♦ |
For reference this is a regression that appeared post 1.99.5 release for unciphered data traffic over HTTP port, tracked by bug https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11331 EDIT: the issue is now fixed starting from nightly build v1.99.8rc0-354-gd36930e answered 07 Jul '15, 12:02 Pascal Quantin edited 09 Jul '15, 10:07 |
Can you share a capture that has the described problem in a publicly accessible spot, e.g. CloudShark, Google Drive, DropBox, etc.?
https://www.cloudshark.org/captures/c72a88d38c5d How can I change permissions file
Best regards