Wireshark-bugs: [Wireshark-bugs] [Bug 3620] Apple IP-over-1394 packets, and MTP2 packets "disapp
Date: Sat, 27 Jun 2009 12:08:37 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=3620


Tyson Key <tyson.key@xxxxxxxxx> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |tyson.key@xxxxxxxxx




--- Comment #8 from Tyson Key <tyson.key@xxxxxxxxx>  2009-06-27 12:08:36 PDT ---
For what it's worth, the IrDA capture file is derived from a sample trace that
I found a while ago, that was done on a Windows machine with a patched version
of WinPcap that also wrote comment metadata to the file, in packets that
presumably have a custom DLT_TYPE, or abuse some other system. 

I can provide that sample file as well, if it's of interest - it seems that
those comment "packets" are still written to the file if exported to pcap-ng,
although the type metadata is lost/modified so that Wireshark believes them to
be malformed IrDA packets.


-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.