I'd like to create a dissector for an in-house "foo" protocol for which I have some PCAP formatted files.
The Data Link Type for now is
For now I just want to dissect the protocol using this DLT.
What I succeeded to do is to write my dissector as a plugin and in
In order for my dissector to be recognized in the
I found this by looking at other dissectors, but I cannot find any official docs on the
Q1: Where can I find some docs about this?
This successfully runs my
Q2: Why does this work since the dissector table specified by me in the plugin is
Q3: Is there a dissector table for PCAP files with a specific DLT?
I saw in the
But when I start wireshark I get the following error:
asked 25 Dec '15, 03:05
There is a dissector table for particular libwiretap packet encapsulations -
The libwiretap encapsulations for the pcap/pcapng
So you want
answered 25 Dec '15, 14:10
Guy Harris ♦♦