diff options
author | Peter Wu <peter@lekensteyn.nl> | 2019-01-28 13:07:18 +0100 |
---|---|---|
committer | Peter Wu <peter@lekensteyn.nl> | 2019-01-28 13:07:18 +0100 |
commit | a458518de9569cd36237743a54b3d40ab55e4e13 (patch) | |
tree | cb66f855a4d1d77dccd0c63cc6843a234f49b8c5 /crafted-pkt/tls-handshake-fragments.py | |
parent | 649671b195f2f7b0a11d1c53158a34a758fbed33 (diff) | |
download | wireshark-notes-a458518de9569cd36237743a54b3d40ab55e4e13.tar.gz |
extcap: add ssh-dumpcap example
Based on ssh-tcpdump, but uses dumpcap and supports specifying the
hostname and interface through capture options. Should probably
integrate that with ssh-tcpdump, but I quickly needed something working.
Known issues:
- On exit Wireshark assumes that stderr is an error.
- dumpcap does not exit on the remote server, tracked by
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=14431
- Stopping a capture, killing dumpcap and starting a capture again
results in a corrupted dissection (interpreted as ERF). The pcapng
file on the filesystem is ok, it is just a GUI problem.
Tested with Wireshark v2.9.1rc0-558-geec3ce3bb2.
Diffstat (limited to 'crafted-pkt/tls-handshake-fragments.py')
0 files changed, 0 insertions, 0 deletions