This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

avoid viewing wireshark generated fields from packet

0

Hi, Is there a way to avoid the wireshark generated fields from display?

This question is marked "community wiki".

asked 19 Sep '16, 23:37

sukeerthi's gravatar image

sukeerthi
6113
accept rate: 0%

wikified 19 Sep '16, 23:52

Do you mean the fields in the packet details pane that have "[]" around them?

(20 Sep '16, 01:44) grahamb ♦

Yes thats correct

(20 Sep '16, 02:08) sukeerthi

One Answer:

0

Not that I know of, that's part of the basic functionality of Wireshark.

Out of interest, why do you want to remove those fields from display?

answered 20 Sep '16, 02:29

grahamb's gravatar image

grahamb ♦
19.8k330206
accept rate: 22%

I am verifying a scenario wherein when ALG is disabled,the info in FTP response packets from server to EPSV request from client is not NATTED by the intermediate device(say a Netscaler). But I find the NATTED IP details in packet but with [] braces.So wanted to confirm if it is a wireshark added info or is in the packet itself.

(20 Sep '16, 02:55) sukeerthi