Wireshark

  • Riverbed Technology
  • WinPcap
SHARKFEST '13 - Wireshark Developer and User Conference - June 16-19, 2013 - UC Berkeley
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] tshark -T fields and info column

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: "Elvis" <wireshark@xxxxxxxxxxxx>
Date: Mon, 26 May 2008 17:52:18 -0700 (PDT)

<snip>

> It works pretty well for me, except I'd like it to have a specific
> delimiter for parsing.  This is one place Tshark needs a little
> tweaking, something I might look into later.

In total agreement. I dug around a bit to see if it such an option already
exists. It doesn't. The formatting code is in tshark.c print_columns(). I
think a new command line switch would be required for this, which is
probably not the most politically simple thing to do....

I also thought it would be nice to know where all the % options are
defined, but couldn't find anything over Sunday morning coffee :)

E

  • Follow-Ups:
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Elvis
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Rob MacKenzie
  • References:
    • [Wireshark-users] tshark -T fields and info column
      • From: wireshark
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Stig Bjørlykke
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Starner, Mark
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Sake Blok
    • Re: [Wireshark-users] tshark -T fields and info column
      • From: Rob MacKenzie
  • Prev by Date: Re: [Wireshark-users] what does "TCP segment of a reassembled PDU" mean?
  • Next by Date: Re: [Wireshark-users] tshark -T fields and info column
  • Previous by thread: Re: [Wireshark-users] tshark -T fields and info column
  • Next by thread: Re: [Wireshark-users] tshark -T fields and info column
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation