Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-bugs: [Wireshark-bugs] [Bug 7865] New: Enhancements to DNP3.0 Control Code Dissection

Date: Mon, 15 Oct 2012 15:02:54 -0700 (PDT)
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7865

           Summary: Enhancements to DNP3.0 Control Code Dissection
           Product: Wireshark
           Version: 1.9.x (Experimental)
          Platform: x86
        OS/Version: Windows 7
            Status: NEW
          Severity: Enhancement
          Priority: Low
         Component: Dissection engine (libwireshark)
        AssignedTo: bugzilla-admin@xxxxxxxxxxxxx
        ReportedBy: ben.stocks@xxxxxxxxx


Created attachment 9354
  --> https://bugs.wireshark.org/bugzilla/attachment.cgi?id=9354
Patch file for described enhancements

Build Information:
Version 1.9.0 (SVN Rev 44759 from /trunk)

Copyright 1998-2012 Gerald Combs <gerald@xxxxxxxxxxxxx> and contributors.
This is free software; see the source for copying conditions. There is NO
warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

Compiled (32-bit) with GTK+ 2.24.10, with Cairo 1.10.2, with Pango 1.30.0, with
GLib 2.32.2, with WinPcap (4_1_2), with libz 1.2.5, without POSIX capabilities,
without libnl, with SMI 0.4.8, with c-ares 1.7.1, with Lua 5.1, without Python,
with GnuTLS 2.12.18, with Gcrypt 1.4.6, with MIT Kerberos, with GeoIP, with
PortAudio V19-devel (built Sep 22 2012), with AirPcap.

Running on 64-bit Windows 7 Service Pack 1, build 7601, with WinPcap version
4.1.2 (packet.dll version 4.1.0.2001), based on libpcap version 1.0 branch
1_0_rel0b (20091008), GnuTLS 2.12.18, Gcrypt 1.4.6, without AirPcap.

Built using Microsoft Visual C++ 10.0 build 30319

Wireshark is Open Source Software released under the GNU General Public
License.

Check the man page and http://www.wireshark.org for more information.
--
The attached patch includes several enhancements to the Control Code field
dissection in the DNP3 dissector:
1. The Operation Type, Queue / Clear and Trip Cotnrol Code are now fields that
captures can be filtered on.
2. The Control Code is now broken out in the dissection to show the individual
fields and mapping into the byte fields
3. The count, on-time, off-time and status fields are shown on the appropriate
bytes
4. The source code comments and some of the source code names are modified to
better reflect the DNP3 specification naming conventions

-- 
Configure bugmail: https://bugs.wireshark.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are watching all bug changes.