Wireshark-users: [Wireshark-users] Tshark -Tfields output
From: "Rob MacKenzie" <rmackenzie@xxxxxxx>
Date: Thu, 6 Mar 2008 13:53:27 -0500
The tshark app has the ability to output custom fields with -Tfields,
but only specific protocol data is available to be output.

Is there a way to access the "Information" field, such as that displayed
by default in the packet list in Wireshark?

If not, I can work with dev to perhaps add it to the frame field as
frame.data



---------------------------------------------------------------------
This transmission (including any attachments) may contain confidential information, privileged material (including material protected by the solicitor-client or other applicable privileges), or constitute non-public information. Any use of this information by anyone other than the intended recipient is prohibited. If you have received this transmission in error, please immediately reply to the sender and delete this information from your system. Use, dissemination, distribution, or reproduction of this transmission by unintended recipients is not authorized and may be unlawful.