Wireshark-dev: Re: [Wireshark-dev] why cannot I use heur_dissector_add("ip", .....
From: John x <[email protected]>
Date: Mon, 27 Jun 2011 05:53:51 +0800
I will consider about it

thanks

> From: [email protected]
> Date: Sun, 26 Jun 2011 14:17:37 -0700
> To: [email protected]
> Subject: Re: [Wireshark-dev] why cannot I use heur_dissector_add("ip", .....
>
>
> On Jun 26, 2011, at 2:09 PM, John x wrote:
>
> > these packets run directly atop IP, any suggestions?
>
> 1) Get a protocol number from the IANA and use it, instead of some hack based on the TTL value.
>
> 2) Hack the IP dissector in a private version of Wireshark.
> ___________________________________________________________________________
> Sent via: Wireshark-dev mailing list <[email protected]>
> Archives: http://www.wireshark.org/lists/wireshark-dev
> Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
> mailto:[email protected]?subject=unsubscribe