This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.
0
1

Dear all, thanks for your attention.

I need to design a class that dissects and filter a protocol without having to install the whole wireshark program. This is because i do not require the other dissectors which are unused and i would like my program to run at a high speed to accommodate traffic that i am receiving.

Is there a way to directly access and use the dissectors?

If yes, how? could you please provide me examples on how to use it in the class?

I have been following this conversation : http://www.wireshark.org/lists/wireshark-users/201006/msg00020.html and sadly the conclusion is to use tshark.

Thanks for your time

Regards, eddie choo

[reposted from the wireshark google groups http://groups.google.com/group/wireshark]

asked 19 Jul '11, 01:39

eddie%20choo's gravatar image

eddie choo
6691715
accept rate: 66%


I have found a temporary solution to my problem, which is the sharktools application. http://www.mit.edu/~armenb/sharktools/

permanent link

answered 19 Jul '11, 20:09

eddie%20choo's gravatar image

eddie choo
6691715
accept rate: 66%

Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×637
×349

question asked: 19 Jul '11, 01:39

question was seen: 4,522 times

last updated: 19 Jul '11, 20:09

p​o​w​e​r​e​d by O​S​Q​A