Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Display Filter Reference: Ethernet

Protocol field name: eth
Versions: 1.0.0 to 1.6.5

Back to Display Filter Reference

Field name Type Description Versions
eth.addr Ethernet or other MAC address Address 1.0.0 to 1.6.5
eth.dst Ethernet or other MAC address Destination 1.0.0 to 1.6.5
eth.ig Boolean IG bit 1.0.0 to 1.6.5
eth.len Unsigned integer, 2 bytes Length 1.0.0 to 1.6.5
eth.lg Boolean LG bit 1.0.0 to 1.6.5
eth.src Ethernet or other MAC address Source 1.0.0 to 1.6.5
eth.trailer Sequence of bytes Trailer 1.0.0 to 1.6.5
eth.type Unsigned integer, 2 bytes Type 1.0.0 to 1.6.5
eth.vlan.cfi Unsigned integer, 2 bytes CFI 1.6.0 to 1.6.2
eth.vlan.id Unsigned integer, 2 bytes VLAN 1.6.0 to 1.6.2
eth.vlan.pri Unsigned integer, 2 bytes Priority 1.6.0 to 1.6.2
eth.vlan.tpid Unsigned integer, 2 bytes Identifier 1.6.0 to 1.6.2

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation