Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-dev: Re: [Wireshark-dev] Sample capture with FT_UINT24 field

From: chuck c <bubbasnmp@xxxxxxxxx>
Date: Sat, 6 Mar 2021 14:56:08 -0600

On Sat, Mar 6, 2021 at 2:12 PM chuck c <bubbasnmp@xxxxxxxxx> wrote:
For testing I would like a real world example vs building a file.

Downloads$ tshark -G fields | grep FT_UINT24 | wc
   1153   10487   96334

There are plenty of suspects but I have yet to find one in a sample pcap.

thanks
chuckc