Wireshark-dev: [Wireshark-dev] Layer 2 header identification...
From: barcaroller <barcaroller@xxxxxxxxx>
Date: Mon, 15 May 2017 18:39:30 -0400
I asked a similar question in comp.protocols.tcp-ip. How does wireshark correctly identify the type of Layer 2 header? For example, how does it know that the Layer 2 header is PPP and not Ethernet (as happened in my case)? Also, in my case the PPP header was missing the 0x7E flag field, but wireshark was still able to correctly parse the packet.