ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-dev: Re: [Wireshark-dev] How do I nest dissectors

From: "Neha Chahal" <neha.chahal@xxxxxxxxx>
Date: Sat, 18 Nov 2006 14:12:57 -0800
True me too cannot find it.

On 11/18/06, Hal Lander <hal_lander@xxxxxxxxxxx> wrote:
I cannot find the "critical" file readme.DISSECTORS either on the website or
in the downloaded doc directory. I am probably being thick, but I even
looked for it on the old ethereal site.

Can you post me url to the file or the file itself.

Thanks
Hal



>From: Brian Vandenberg <brian@xxxxxxxxx>
>Reply-To: brian@xxxxxxxxx,Developer support list for Wireshark
><wireshark-dev@xxxxxxxxxxxxx>
>To: Developer support list for Wireshark <wireshark-dev@xxxxxxxxxxxxx >
>Subject: Re: [Wireshark-dev] How do I nest dissectors
>Date: Fri, 17 Nov 2006 08:12:14 -0700
>
>   Your best bet is to visit the wireshark website's developer info
>section.  In particular, you should read readme.DEVELOPER,
>readme.PLUGINS, and readme.DISSECTORS (the latter is critical).
>
>   The dissectors one is long, but worth the read.
>
>-Brian
>
>Hal Lander wrote:
> > The protocol I want to dissect ' foo' is contained within the data of a
>UPD
> > packet.
> > Normall Wireshark would display the UPD packet showing it has a length
>of 44
> > bytes and displaying its source and destination. It would also show that
>the
> > UDP packet contains 36 bytes of data (which is where my protocol is).
> >
> > Once I introduce my dissector using
> >     dissector_add("udp.port", 2080, ff_handle);
> > Wireshark shows foo packets with a length of 44 and no other
>information.
> >
> > I was expecting Wireshark to first dissect the UDP packet, then stat to
> > dissect my foo protocol in the data of the UDP.
> >
> > I am obviously not understanding how to nest the dissectors, can anybody
> > point me in the right direction.
> >
> > TIA
> > Hal
> >
> > _________________________________________________________________
> > Get free, personalized commercial-free online radio with MSN Radio
>powered
> > by Pandora http://radio.msn.com/?icid=T002MSN03A07001
> >
> > _______________________________________________
> > Wireshark-dev mailing list
> > Wireshark-dev@xxxxxxxxxxxxx
> > http://www.wireshark.org/mailman/listinfo/wireshark-dev
> >
>_______________________________________________
>Wireshark-dev mailing list
>Wireshark-dev@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-dev

_________________________________________________________________
All-in-one security and maintenance for your PC.� Get a free 90-day trial!
http://clk.atdmt.com/MSN/go/msnnkwlo0050000002msn/direct/01/?href="">



_______________________________________________
Wireshark-dev mailing list
Wireshark-dev@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-dev




--
Thanks and Regards,
Neha Chahal
Cell- 443 207 0414