Wireshark-users: Re: [Wireshark-users] tshark filter
From: David Milbourne <dmilbo@xxxxxxxxx>
Date: Wed, 13 Oct 2010 17:53:50 -0400
Marco,

That works - thank you!

DM

On Wed, Oct 13, 2010 at 3:58 AM, Marco Simone Zuppone <msz@xxxxxx> wrote:
Hello,
 
you can try with: ftp.response.code == 230
 
Regards.
Marco S. Zuppone

On Tue, Oct 12, 2010 at 10:56 PM, David Milbourne <dmilbo@xxxxxxxxx> wrote:
I have a capture file that I'd like to go through and list all of the successful ftp logins.  How can I do that with tshark?

Thanks,
DM

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe


___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe