Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-dev: Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: "ronnie sahlberg" <ronniesahlberg@xxxxxxxxx>
Date: Mon, 6 Nov 2006 11:57:42 +1100

"I've filtered out a capture file with all the NSPI commands implemented in the
dissector. Is "SampleCapture - DCE/RPC and MSRPC-based protocols" the right
place to upload the capture file?"

Yes, that is the correct place.



On 11/6/06, Julien Kerihuel <j.kerihuel@xxxxxxxxxxxxxx> wrote:
On Sunday 05 November 2006 07:19, ronnie sahlberg wrote:
> 2, have a look at the winreg.cnf conformance file, the section about
> tracking policy handles.
> This feature will add an expansion to policy handles to tell the user
> in which frame they were opened/created or closed/destroyed
>

Done. I've attached the cnf file.

>
> 3,  can out add a nice page to the wiki and a few example captures
> containing as many as possible of the NSPI commands?

I've filtered out a capture file with all the NSPI commands implemented in the
dissector. Is "SampleCapture - DCE/RPC and MSRPC-based protocols" the right
place to upload the capture file?
If it's ok, I'll add a "Name Service Provider Interface MSRPC interface"
section and upload a complete MAPI profile creation pcap file.

> On 11/4/06, Julien Kerihuel <j.kerihuel@xxxxxxxxxxxxxx> wrote:
> > The NspiGetMatches issue is fixed.
> >
> > No modifications have been brought to the IDL, only fixes in
> > Wireshark/NDR.pm
> > (branch SAMBA_4_0 Wireshark/NDR.pm) with rev 19559.
> >
> > Regards.
> >
> > On Saturday 04 November 2006 19:00, Joerg Mayer wrote:
> > > On Sat, Nov 04, 2006 at 05:38:18AM +0200, Julien Kerihuel wrote:
> > > > some news about the NSPI dissector improvements/bugs/fixes:
> > > >
> > > > The new version of the dissector will compile without any patches to
> > > > apply to Wireshark/NDR.pm. Jelmer has improved the patch and pidl now
> > > > support enums as return type. Regarding the nspi.cnf file, it won't
> > > > be useful anymore.
> > > >
> > > > Regarding the dissector, I've noticed a bug in NspiGetMatches which
> >
> > isn't
> >
> > > > dumped correctly. I'm currently investigating the problem and I'll
> >
> > notify
> >
> > > > the list when a fixed version is available.
> > >
> > > Checked into the wireshark source (./idl/nspi/) and the main dissector
> > > repo.
> > >
> > > Committed revision 19794.
> > >
> > > thanks
> > >      Joerg
> > > _______________________________________________
> > > Wireshark-dev mailing list
> > > Wireshark-dev@xxxxxxxxxxxxx
> > > http://www.wireshark.org/mailman/listinfo/wireshark-dev
> >

--
Julien Kerihuel
j.kerihuel@xxxxxxxxxxxxxx
OpenChange Project Manager

GnuPG Key: http://jkerihuel.openchange.org/keys/kerihuel_gpg_public.asc




_______________________________________________
Wireshark-dev mailing list
Wireshark-dev@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-dev



  • Follow-Ups:
    • Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
      • From: Julien Kerihuel
  • References:
    • [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
      • From: Julien Kerihuel
    • Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
      • From: Julien Kerihuel
    • Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
      • From: ronnie sahlberg
    • Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
      • From: Julien Kerihuel
  • Prev by Date: Re: [Wireshark-dev] Changing capture file offsets to 64bits - please distclean your builds!
  • Next by Date: [Wireshark-dev] Where do I get gmodule.h for dissector development
  • Previous by thread: Re: [Wireshark-dev] Problem due to segmentation of GTP packet.....
  • Next by thread: Re: [Wireshark-dev] contribution: OpenChange dissector for NSPI protocol
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation