ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
July 17th, 2024 | 10:00am-11:55am SGT (UTC+8) | Online

Wireshark-bugs: [Wireshark-bugs] [Bug 3560] USB Packets in pcap-ng Files Not Dissected Properly

Date: Wed, 17 Sep 2014 18:07:25 +0000

Comment # 15 on bug 3560 from
Aah, come to think of it, given by the interface name (usbmon0), this trace was
probably generated under an ancient (late 2.6.x) Linux kernel version with the
legacy "text based" trace format, which had a different DLT than the "modern"
format - and from what I've seen over time, support for it was (accidentally?)
removed from Wireshark.

I think the Wiki still has examples of the older format, although I suspect
that the packets don't get parsed in the latest version of Wireshark.

Tyson.

(In reply to Guy Harris from comment #13)
> (In reply to Tyson Key from comment #6)
> > Created attachment 3164 [details]
> > New version of the usbmon0 ntar capture, to make things easier (converted
> > version of 3163)
> 
> Converted in what fashion?  It looks really badly mangled in top-of-trunk
> Wireshark.


You are receiving this mail because:
  • You are the assignee for the bug.
  • You are watching all bug changes.