Display Filter Reference: SMB Pipe Protocol

Protocol field name: pipe

Versions: 1.0.0 to 1.10.14

Back to Display Filter Reference

Field name Description Type Versions
pipe.fragment Fragment Frame number 1.0.0 to 1.10.14
pipe.fragment.count Fragment count Unsigned integer, 4 bytes 1.6.0 to 1.10.14
pipe.fragment.error Defragmentation error Frame number 1.0.0 to 1.10.14
pipe.fragment.multipletails Multiple tail fragments found Boolean 1.0.0 to 1.10.14
pipe.fragment.overlap Fragment overlap Boolean 1.0.0 to 1.10.14
pipe.fragment.overlap.conflict Conflicting data in fragment overlap Boolean 1.0.0 to 1.10.14
pipe.fragment.toolongfragment Fragment too long Boolean 1.0.0 to 1.10.14
pipe.fragments Fragments Label 1.0.0 to 1.10.14
pipe.function Function Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.getinfo.current_instances Current Instances Unsigned integer, 1 byte 1.0.0 to 1.10.14
pipe.getinfo.info_level Information Level Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.getinfo.input_buffer_size Input Buffer Size Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.getinfo.maximum_instances Maximum Instances Unsigned integer, 1 byte 1.0.0 to 1.10.14
pipe.getinfo.output_buffer_size Output Buffer Size Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.getinfo.pipe_name Pipe Name Character string 1.0.0 to 1.10.14
pipe.getinfo.pipe_name_length Pipe Name Length Unsigned integer, 1 byte 1.0.0 to 1.10.14
pipe.peek.available_bytes Available Bytes Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.peek.remaining_bytes Bytes Remaining Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.peek.status Pipe Status Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.priority Priority Unsigned integer, 2 bytes 1.0.0 to 1.10.14
pipe.reassembled.length Reassembled SMB Pipe length Unsigned integer, 4 bytes 1.4.0 to 1.10.14
pipe.reassembled_in This PDU is reassembled in Frame number 1.0.0 to 1.10.14
pipe.write_raw.bytes_written Bytes Written Unsigned integer, 2 bytes 1.0.0 to 1.10.14
Go Beyond with Riverbed Technology

Riverbed is Wireshark's primary sponsor and provides our funding. They also make great products that fully integrate with Wireshark.

I have a lot of traffic...

ANSWER: SteelCentral™ Packet Analyzer PE
  • • Visually rich, powerful LAN analyzer
  • • Quickly access very large pcap files
  • • Professional, customizable reports
  • • Advanced triggers and alerts
Learn More

Buy Now

No, really, I have a LOT of traffic…

ANSWER: SteelCentral™ NetShark appliance
  • • Troubleshoot problems faster
  • • Quickly identify the applications running on your network
  • • Monitor your virtual machine traffic
Learn More