This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Monitoring NORM message and decoding it

0

Attempting to capture NORM message at the Ethernet port. Changed the filter selection only to NORM and TCP. Wireshark capture window displays UNKONWN on protocol column.

Please help where I am making mistake. I am using Wireshark 1.6.0 on Windows XP machine.

Also, do I need a Wireshark decoder plugin

asked 19 Jan '12, 11:15

sss's gravatar image

sss
1111
accept rate: 0%


One Answer:

0

I guess you are referring to NACK-Oriented Reliable Multicast (NORM) Transport Protocol? Its dissector does exist, just make sure to set its preference "Try to decode UDP packets as NORM packets."

answered 20 Jan '12, 02:44

Jaap's gravatar image

Jaap ♦
11.7k16101
accept rate: 14%