Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-dev: Re: [Wireshark-dev] tshark option for reassembled fragment output

From: Christopher Maynard <Christopher.Maynard@xxxxxxxxx>
Date: Mon, 4 Mar 2013 06:05:37 +0000 (UTC)
Evan Huus <eapache@...> writes:

> Right now, wireshark has three CLI filter flags: -R, -d, -f.
> -d is available through the 'filter' field in the file->open dialogue

No, that's the -R.  The label is incorrect.

> -f is available through the 'capture filter' field in the
> capture->options dialogue
> -R is not available in the GUI at all?

-R is in the file->open dialog.  And when specifying a read filter, I don't
think the display filter should be pre-populated with it.