Hello, I am using version 2.0.0rc1 on OS X. I am just looking at packets on my own machine (not in monitor mode). I am trying to view HTTP packets but whenever I do a curl command or go to a website they come across as TCP and I can't see the HTTP data, is that expected? I can look at the TCP packets and see that they are HTTP related because they have the HTTP coloring code. asked 22 Oct '15, 13:48 calers |
One Answer:
This isn't referring to TCP / HTTP packets but its related to this bug: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=11593 Downloading the newest RC here will fix it: https://www.wireshark.org/download/automated/ answered 22 Oct '15, 13:56 calers edited 22 Oct '15, 13:59 |
Here is the same observation: https://ask.wireshark.org/questions/46764/http-in-packet-list-frame-vs-display-filter?page=1&focusedAnswerId=46775#46775