Hi
I just installed 0.7.2 on my OpenBSD i386 (Pentium) system from the
OpenBSD ports collection. I was using 0.6.1 on another system and this is a
great improvement. I loaded a 13Mb uncompressed Sniffer file and it took
~30 seconds. I then ran a display, "ip.addr eq host.domain.com", and it
tooked ~80 seconds to filter the file, it actually core'd (Segmentation
fault) on this once but I couldn't get it to repeat the next time I tried
it.
When I tried to do a save as, the only save option that is usable,
to a different name so I can save the filtered data I get the following
error:
The file "(null)" could not be opened: Bad address.
Also when I attempted to follow the TCP stream it core'd
(Segmentation fault) with or without a packet selected. It did that in
0.6.1 also.
Is there a way to save a file readin from one data format to another
data format? cpdump to Sniffer would be very handy so I could use some of
my Win32 tools that only import one foreign packet capture file format,
uncompressed Sniffer.
Lessee, anything else, is there a way to display absolute date &
time in the display? Sometimes I come back to files weeks after I capture
them when I'm comparing the data to data available from other sources.
thanks for the great project,
diana