Display Filter Reference: NBMA Next Hop Resolution Protocol

Protocol field name: nhrp

Versions: 1.0.0 to 2.6.1

Back to Display Filter Reference

Field name Description Type Versions
nhrp.auth_ext.data Data Sequence of bytes 2.0.0 to 2.6.1
nhrp.auth_ext.reserved Reserved Unsigned integer, 2 bytes 1.4.0 to 2.6.1
nhrp.auth_ext.spi SPI Unsigned integer, 2 bytes 1.4.0 to 2.6.1
nhrp.auth_ext.src_addr Source Address IPv4 address 1.4.0 to 2.6.1
nhrp.auth_ext.src_addr_bytes Source Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.cli.addr.tl Client Address Type/Len Unsigned integer, 1 byte 1.0.0 to 1.0.16
nhrp.cli.addr_tl Client Address Type/Len Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.cli.addr_tl.len Length Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.cli.addr_tl.type Type Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.cli.saddr.tl Client Sub Address Type/Len Unsigned integer, 1 byte 1.0.0 to 1.0.16
nhrp.cli.saddr_tl Client Sub Address Type/Len Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.cli.saddr_tl.len Length Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.cli.saddr_tl.type Type Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.client.nbma.addr Client NBMA Address IPv4 address 1.0.0 to 2.6.1
nhrp.client.nbma.addr_bytes Client NBMA Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.client.nbma.saddr Client NBMA Sub Address Sequence of bytes 1.0.0 to 1.6.16, 2.0.0 to 2.6.1
nhrp.client.prot.addr Client Protocol Address IPv4 address 1.0.0 to 2.6.1
nhrp.client.prot.addr_bytes Client Protocol Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.code Code Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.devcap_ext.dstcap Destination Capabilities Unsigned integer, 4 bytes 1.4.0 to 2.6.1
nhrp.devcap_ext.dstcap.V VPN-aware Boolean 1.4.0 to 2.6.1
nhrp.devcap_ext.srccap Source Capabilities Unsigned integer, 4 bytes 1.4.0 to 2.6.1
nhrp.devcap_ext.srccap.V VPN-aware Boolean 1.4.0 to 2.6.1
nhrp.dst.prot.addr Destination Protocol Address IPv4 address 1.0.0 to 2.6.1
nhrp.dst.prot.addr_byets Destination Protocol Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.dst.prot.len Destination Protocol Len Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.err.code Error Code Unsigned integer, 2 bytes 1.4.0 to 2.6.1
nhrp.err.offset Error Offset Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.err.pkt Errored Packet Sequence of bytes 1.0.0 to 1.6.16
nhrp.ext.c Compulsory Flag Boolean 1.0.0 to 2.6.1
nhrp.ext.extra Superfluous data follows End Extension Label 1.12.0 to 2.6.1
nhrp.ext.len Extension length Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.ext.malformed Incomplete Authentication Extension Label 1.12.0 to 2.6.1
nhrp.ext.not_allowed Extensions not allowed per RFC2332 section 5.2.7 Label 1.12.0 to 2.6.1
nhrp.ext.type Extension Type Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.ext.val Extension Value Sequence of bytes 1.0.0 to 1.6.16
nhrp.flag.a Authoritative Boolean 1.0.0 to 2.6.1
nhrp.flag.d Stable Association Boolean 1.0.0 to 2.6.1
nhrp.flag.n Expected Purge Reply Boolean 1.0.0 to 2.6.1
nhrp.flag.nat Cisco NAT Supported Boolean 1.0.0 to 2.6.1
nhrp.flag.q Is Router Boolean 1.0.0 to 2.6.1
nhrp.flag.s Stable Binding Boolean 1.0.0 to 2.6.1
nhrp.flag.u Uniqueness Bit Boolean 1.10.0 to 2.6.1
nhrp.flag.u1 Uniqueness Bit Boolean 1.0.0 to 1.8.15
nhrp.flags Flags Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.afn Address Family Number Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.bad_checksum Bad checksum Label 2.4.0 to 2.6.1
nhrp.hdr.chksum NHRP Packet Checksum Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.chksum.status NHRP Packet Checksum Status Unsigned integer, 1 byte 2.4.0 to 2.6.1
nhrp.hdr.extoff Extension Offset Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.extoff.invalid Extension offset is less than the fixed header length Label 1.12.0 to 2.6.1
nhrp.hdr.hopcnt Hop Count Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.hdr.op.type NHRP Packet Type Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.hdr.pktsz Packet Length Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.pro.snap Protocol Type (long form) Sequence of bytes 1.0.0 to 1.0.16
nhrp.hdr.pro.snap.oui Protocol Type (long form) - OUI Unsigned integer, 3 bytes 1.2.0 to 2.6.1
nhrp.hdr.pro.snap.pid Protocol Type (long form) - PID Unsigned integer, 2 bytes 1.2.0 to 2.6.1
nhrp.hdr.pro.type Protocol Type (short form) Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.hdr.shtl Source Address Type/Len Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.hdr.shtl.len Length Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.hdr.shtl.type Type Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.hdr.sstl Source SubAddress Type/Len Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.hdr.sstl.len Length Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.hdr.sstl.type Type Unsigned integer, 1 byte 1.2.0 to 2.6.1
nhrp.hdr.version Version Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.htime Holding Time (s) Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.mtu Max Transmission Unit Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.pref CIE Preference Value Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.prefix Prefix Length Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.prot.len Client Protocol Length Unsigned integer, 1 byte 1.0.0 to 2.6.1
nhrp.protocol_type Protocol Type (long form) Sequence of bytes 2.0.0 to 2.6.1
nhrp.reqid Request ID Unsigned integer, 4 bytes 1.0.0 to 2.6.1
nhrp.src.nbma.addr Source NBMA Address IPv4 address 1.0.0 to 2.6.1
nhrp.src.nbma.addr_bytes Source NBMA Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.src.nbma.saddr Source NBMA Sub Address Sequence of bytes 1.0.0 to 1.6.16, 2.0.0 to 2.6.1
nhrp.src.prot.addr Source Protocol Address IPv4 address 1.0.0 to 2.6.1
nhrp.src.prot.addr_bytes Source Protocol Address Sequence of bytes 2.0.0 to 2.6.1
nhrp.src.prot.len Source Protocol Len Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.unknown_ext.value Extension Value Sequence of bytes 1.8.0 to 2.6.1
nhrp.unused Unused Unsigned integer, 2 bytes 1.0.0 to 2.6.1
nhrp.vendor_ext.data Data Sequence of bytes 2.0.0 to 2.6.1
nhrp.vendor_ext.id Vendor ID Sequence of bytes 1.4.0 to 2.6.1
Go Beyond with Riverbed Technology

Riverbed is Wireshark's primary sponsor and provides our funding. They also make great products that fully integrate with Wireshark.

I have a lot of traffic...

ANSWER: SteelCentral™ Packet Analyzer PE
  • • Visually rich, powerful LAN analyzer
  • • Quickly access very large pcap files
  • • Professional, customizable reports
  • • Advanced triggers and alerts
Learn More

Buy Now

No, really, I have a LOT of traffic…

ANSWER: SteelCentral™ NetShark appliance
  • • Troubleshoot problems faster
  • • Quickly identify the applications running on your network
  • • Monitor your virtual machine traffic
Learn More