Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] filter like "eth.src == 00:00:00:00:00:01" can not work

From: Fajun Chen <c.fajun@xxxxxxxxx>
Date: Sat, 15 May 2010 18:14:48 +0800
Dear Alvin Jiang,

Thank you so much. It works. It looks I have to identify the protocol type used at first.

Best,
Fajun Chen

On Sat, May 15, 2010 at 12:09 PM, Alvin Jiang <macintoshyster@xxxxxxxxx> wrote:
Try "wlan.sa == 00:00:00:00:00:01"

On Sat, May 15, 2010 at 10:55 AM, Fajun Chen <c.fajun@xxxxxxxxx> wrote:
I have a pcap file generated by ns3 simulator. It can be read correctly by the wireshark tool. However, when I try to use the filter like "eth.src = "" no results are left which is not true according to the pcap records. The pcap file is attached. Is there any one can help me? Thank you!

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe



--
Best regards,
Alvin Jiang

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe