Wireshark-users: Re: [Wireshark-users] How to identify voice traffic while passing through unconv
From: Seth Hall <seth@xxxxxxxx>
Date: Fri, 6 Jan 2012 16:09:15 -0500
On Jan 6, 2012, at 1:43 PM, Azhar Chowdhury wrote:

> We have been observing there are voice traffic passing unconventional
> protocols such as the DNS, SSL, SSLv3, IPA, RPCAP, RTMP in our ISP
> data pipes.
> To identify this it takes long analysis in wireshark, is there any
> easy way to identify voice data with source & destip using tshark or
> other

Do you have packets of this happening?  I'm surprised to hear that you actually see this.

 .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro-ids.org/