Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-dev: Re: [Wireshark-dev] Live wireshark capture packets from my windows filter driver

From: Roland Knall <rknall@xxxxxxxxx>
Date: Sat, 12 Nov 2016 18:08:36 +0100
Hi

One possibility would be an extcap device. See README.extcap in the doc subdirectory for more details.

regards

On Sat, Nov 12, 2016 at 3:35 AM, Ashok Nandoori <anandoori@xxxxxxxxx> wrote:
Hi,

Can you send me some pointers on how to write plug-in to wireshark to capture live packets from my windows filter driver.

Basically my filter driver encrypts the packets, so wireshark can only see encrypted packets. For debug-ability if I want to write a plug-in to wireshark to capture packets from my driver, how to do it?

Thanks,
Ashok


___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives:    https://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request@wireshark.org?subject=unsubscribe