Wireshark-dev: Re: [Wireshark-dev] Ethernet header below MPLS...
From: Roland Knall <[email protected]>
Date: Fri, 16 Sep 2016 10:13:40 +0200
On how he did that, Wireshark dissectors can attach each other to dissect payloads if they apply for them. So in this case, the MPLS dissector has a hook, to which either the ETH dissector has attached or was called by the MPLS dissector.

-
Roland

On Fri, Sep 16, 2016 at 3:03 AM, Guy Harris <[email protected]> wrote:
On Sep 15, 2016, at 4:13 PM, barcaroller <[email protected]> wrote:

> I would not expect to see an Ethernet header right below an MPLS header.

See

        https://tools.ietf.org/html/rfc4448

which is called "Encapsulation Methods for Transport of Ethernet over MPLS Networks".
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <[email protected]>
Archives:    https://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-dev
             mailto:[email protected]wireshark.org?subject=unsubscribe