Wireshark-dev: Re: [Wireshark-dev] Follow TCP stream funktion for GTP protocol
From: "Luis EG Ontanon" <luis.ontanon@xxxxxxxxx>
Date: Thu, 13 Sep 2007 16:36:36 +0200
the session keying mechanism of GTP is similar to that of ALCAP,
SCCP(SUA) and TCAP, I have plans to render the SCCP code not SCCP
specific and use it for ALCAP and TCAP as well, GTP might jump in the
train (provided that I have a GTP test suite of capture files).

BTW. Do not expect it soon...

On 9/13/07, Frank Maerz <frank@xxxxxxxxxxxx> wrote:
> Hello Wireshark Dev.,
>
> I am using wireshark on a very regualr basic for GTP traffic. GTP stands for (GPRS Tunnel Protocol) and is used in mobile network operators. (GSM based)
>
> I was wondering how difficult it would be to inculde a feature similar to "follow TCP stream" for a single GPRS tunnel. I can not code, but maybe here somebody in the dev group know how to do it.
>
> GTP exsits in two version. GTPv0 and GTPv1. In oder to get a packets filtered which belong to a single tunnel I need to filter for 5 diffenet parameter in GTPv1. GTPv0 is  only two parameter to do the trick. I wonder if a funtion could be build into wireshark to do this automatily.
>
>
> Best regards,
>
> Frank Maerz
>
>
>
>
>
> _______________________________________________
> Wireshark-dev mailing list
> Wireshark-dev@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-dev
>


-- 
This information is top security. When you have read it, destroy yourself.
-- Marshall McLuhan