Wireshark-users: [Wireshark-users] tshark output format

From: "MKS {}" <mks_97@xxxxxxxxxxx>
Date: Mon, 13 Aug 2007 20:30:14 +0000

tshark display format includes data for all the protocols decoded (e.g etherner, IP, UDP/TCP and application layer protocol) in the stack.

Is there a way by which I can specify that I only want to see data for a given protocol layer e.g app. layer only (for which I have a custom dissector)?



