ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-dev: Re: [Wireshark-dev] Shard Output Format

From: Oliver-Tobias Ripka <otr@xxxxxxxxxx>
Date: Fri, 13 Sep 2019 16:40:21 +0200
Hello Dario,

I'm doing a "frames" requests.

After some debugging I found the following patch seems to do what
I want.

https://github.com/oripka/wireshark/commit/c9d39a54f4f182ef2784c660a6e51f4b6a782523

All the best,

Oliver


According to Dario Lombardo on Fri, Sep 13 2019:

> Which sharks commands are you using?
> 
> On Fri, Sep 13, 2019 at 1:23 PM Oliver-Tobias Ripka <otr@xxxxxxxxxx> wrote:
> 
> > Hello List,
> >
> > I am looking to influence the output format of the sharkd json.
> >
> > For example tshark -T fields -e tcp.flags.syn, formats the flag as 0 or 1
> >
> > Sharkd outputs "Set", "Not Set" similar to adding a column in the
> > Wireshark GUI. I was looking at the function sharkd_dissect_columns in
> > sharkd.c but couldn't directly find an option to change the formatting.
> >
> > How can I influece the behaviour of sharkd to not resolve the values
> > into "Set" and "Not Set"?
> >
> > All the best,
> >
> > Oliver
> > --
> > ___________________________________________________________________________
> > Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
> > Archives:    https://www.wireshark.org/lists/wireshark-dev
> > Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-dev
> >              mailto:wireshark-dev-request@xxxxxxxxxxxxx
> > ?subject=unsubscribe
> 
> 
> 
> -- 
> 
> Naima is online.

> ___________________________________________________________________________
> Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
> Archives:    https://www.wireshark.org/lists/wireshark-dev
> Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-dev
>              mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe


--