Wireshark-users: [Wireshark-users] Dumping only UDP payload
Date Prev · Date Next · Thread Prev · Thread Next
From: "Tennis Smith" <tennis@xxxxxxxxxxxxxxxxxxx>
Date: Thu, 1 May 2008 11:58:05 -0500

Hi,

 

I’m testing a protocol that is encapsulated in udp.  So, I want to capture only the udp payload without any ip or udp headers. It needs to be the entire udp payload as well, not a partial capture.

 

Can that be done with ‘tshark’?

 

Thanks,

-T