Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] h.248 over SCTP

From: "Anders Broman" <anders.broman@xxxxxxxxxxxx>
Date: Tue, 15 Jan 2008 11:57:55 +0100
Hi,
Well what version vere you using before? Binary H.248 is relativly new and undervent drastic changes
in the lst year or so...

Regards
Anders 

-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Ariel Burbaickij
Sent: den 15 januari 2008 11:38
To: Community support list for Wireshark
Subject: Re: [Wireshark-users] h.248 over SCTP

Hello Andreas, Hello all,
actually we upgraded to 0.99.7 and wireshark decodes the very same stream nicely.
So much for positive experience ;-).
However, the question is, without going to repository, where there any changes that could have caused such a drastic change?

/wbr
Ariel Burbaickij

On Jan 15, 2008 7:12 AM, Anders Broman <a.broman@xxxxxxxxx> wrote:
> No both *should* work...
> Regards
> Anders
>
> -----Ursprungligt meddelande-----
> Från: wireshark-users-bounces@xxxxxxxxxxxxx
> [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] För Ariel Burbaickij
> Skickat: den 15 januari 2008 00:39
> Till: Community support list for Wireshark
> Ämne: Re: [Wireshark-users] h.248 over SCTP
>
>
> Hello Anders,
> it is actually binary not text. Would it matter for wireshark?
>
> /wbr
> Ariel Burbaickij
> On 1/12/08, Anders Broman <a.broman@xxxxxxxxx> wrote:
> > Hi,
> > Traces I have of H.248 over SCTP decodes...
> > Is PPID 7 used? Is it Binary or text?
> > Can you send a small sample trace?
> > Regards
> > Anders
> >
> > -----Ursprungligt meddelande-----
> > Från: wireshark-users-bounces@xxxxxxxxxxxxx
> > [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] För Ariel Burbaickij
> > Skickat: den 12 januari 2008 11:02
> > Till: wireshark-users@xxxxxxxxxxxxx
> > Ämne: [Wireshark-users] h.248 over SCTP
> >
> > Hello all,
> > we use h.248 over SCTP and wireshark behaves in such a way that I at 
> > least need your advise as of now I still hesistate to submit bug report.
> > We observe following:
> > 1) It is not possible to filter on h248 or MEGACO filters user needs 
> > to enter sctp protocol payload
> >    number in order to get the packets of interest.
> > 2) h.248 content is not being decoded properly, also after applying 
> > "decode as..." functionality
> >
> > 3) it is not possible to select H.248/MEGACO if decode should be 
> > based on port and not on PPID
> >
> > Question: Is all this known bugs/behaviour, do I do something wrong 
> > while working with it or should I submit bug report?
> >
> >
> > /wbr
> > Ariel Burbaickij
> > _______________________________________________
> > Wireshark-users mailing list
> > Wireshark-users@xxxxxxxxxxxxx
> > http://www.wireshark.org/mailman/listinfo/wireshark-users
> >
> > _______________________________________________
> > Wireshark-users mailing list
> > Wireshark-users@xxxxxxxxxxxxx
> > http://www.wireshark.org/mailman/listinfo/wireshark-users
> >
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users
>
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users
>
_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users