This is our old Q&A Site. Please post any new questions and answers at

I have instances of VoIP traffic to sites where Wireshark says some of the flows are using UDP and some are marked as GVSP. I know that GVSP is UDP too, I was just wondering why Wireshark displays them differently?

asked 23 Mar '16, 07:47

Aztecdoug's gravatar image

accept rate: 0%

Because Wireshark tries to give an as detailed as possible dissection of the network data. If it thinks there's GVSP payloads in there and the relevant dissector is enabled, it will try to dissect that payload. Why does it think it's there in the first place? That may depend on external signaling, heuristics, or manual configuration of the dissector.

permanent link

answered 23 Mar '16, 08:03

Jaap's gravatar image

Jaap ♦
accept rate: 14%

Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here



Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text]( "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:


question asked: 23 Mar '16, 07:47

question was seen: 9,521 times

last updated: 23 Mar '16, 08:03

p​o​w​e​r​e​d by O​S​Q​A