Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-dev: Re: [Wireshark-dev] filter expression required

From: Joshua Wright <jwright@xxxxxxxxxxx>
Date: Mon, 02 Jul 2007 08:21:18 -0400
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Amit Paliwal wrote:
> I cant afford to loose any packet because I have to run this application 
> for RTOS so packets will eb coming with great speed.

If this is the case, then I wouldn't recommend tshark.  Windump might be
a better tool here, with the syntax:

windump.exe -i \Device\NPF_{52EFAA93-34C5-4F7E-80AE-638A48E3F1BD} "udp
and port 137"

You can get Windump from http://www.winpcap.org/windump/install/.

- -Josh
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)

iQIVAwUBRojtvTWX3FIa1TkuAQIfcg/+Kbn42GttX/EAMkfjDy9fHQ83KAuXfQ1d
g0+Uh9Baswkss1LEwwxrKIafDpbriOkyFbmRp0cqyklpco1LeY/fWbL5guYAOFmp
oZTesovBtyB83pTRl7zjhyiozEhOy0VxhxAwPlG2hcpZuMBl7K3vJpybUr5adLo6
etg+ByXqfpFi/87s2oZTVu/Z69oalqDYAfCdLAy4n480m1UlTlJapf75o1yvIktu
m08u/Adv4Xl+//gK6Zw2jgdUVCIHMSZhYQVWfz3aIYea0oHukXZkq/rk7f4qw52B
R6HdfwJQKPXQI4AWjlIAFwptmAoQi2Xk8I7TirxmoHyHr8ozLh39dtn1Aq5Vbsh0
lmFssECsrBhO/khEnM4YwD30EvEngq9D6JrQi1jImjlSb/OfW3PpWH+CiwadIkOc
6oUyjyq6LQoW7KTYZgpMFD28VNYyTUXsLBDcFf1+SVL0Fg32A7v5Kzqe+K91KZ4j
hy+9ig1oZsSv8hjJ96doiC04VhrOdkWFaAglVCOW5X2pz03UI18HwLypyukIqz1P
1aIDlBlLaTBJF4nuJhj9fcsfqY2+AVKEb4pJ5L0zzYcs81nCeTME9b+PQh6XJ62X
+4jO7fg5oJryGwnseJeLy2uq4HIb+0NKr5YI1w1c/++kA5N+IPqu8++nbR6hM88U
U+WN0X+1s4Y=
=nAHR
-----END PGP SIGNATURE-----