ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
July 17th, 2024 | 10:00am-11:55am SGT (UTC+8) | Online

Ethereal-users: [Ethereal-users] Triggers in Ethereal & Post-Capture Processing

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: Jeff Gilchrist <jeff.gilchrist@xxxxxxxxxx>
Date: 24 Oct 2001 14:20:41 -0400
Is there any way to get Ethereal to trigger on certain events?  Say,
only start saving capture data to a file if it see traffic on a certain
port or from a certain IP address?  Or a stop trigger as well?  If not,
are there any plans on adding that in the future?

Are there any programs or scripts out there that will take a capture
file and strip out the different TCP "streams" into seperate files?  For
instance, you capture traffic for an hour and there are 15 FTP
sessions.  With the GUI program, you can "Follow TCP Stream" and it will
pull out the data for that stream.  Is there any way to do that with the
text version or another program so it can be done automatically instead
of manually following streams with the GUI and saving the data?

Thanks,
Jeff.