Display Filter Reference: E100 Encapsulation

Protocol field name: e100

Versions: 1.2.0 to 2.6.3

Back to Display Filter Reference

Field name Description Type Versions
e100.bytes_cap Bytes Captured Unsigned integer, 4 bytes 1.2.0 to 2.6.3
e100.bytes_orig Bytes in Original Packet Unsigned integer, 4 bytes 1.2.0 to 2.6.3
e100.ip E100 IP Address IPv4 address 1.2.0 to 2.6.3
e100.mon_pkt_id Monitor Packet ID Unsigned integer, 4 bytes 1.2.0 to 2.6.3
e100.pkt_ts Packet Capture Timestamp Date and time 1.2.0 to 2.6.3
e100.port_recv E100 Port Received Unsigned integer, 1 byte 1.2.0 to 2.6.3
e100.seq_num Sequence Number Unsigned integer, 2 bytes 1.2.0 to 2.6.3
e100.version Header Version Unsigned integer, 1 byte 1.2.0 to 2.6.3
Go Beyond with Riverbed Technology

Riverbed is Wireshark's primary sponsor and provides our funding. They also make great products that fully integrate with Wireshark.

I have a lot of traffic...

ANSWER: SteelCentral™ Packet Analyzer PE
  • • Visually rich, powerful LAN analyzer
  • • Quickly access very large pcap files
  • • Professional, customizable reports
  • • Advanced triggers and alerts
Learn More

Buy Now

No, really, I have a LOT of traffic…

ANSWER: SteelCentral™ AppResponse 11
  • • Full stack analysis – from packets to pages
  • • Rich performance metrics & pre-defined insights for fast problem identification/resolution
  • • Modular, flexible solution for deeply-analyzing network & application performance
Learn More