Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] add timestamp to fieldlist in wireshark

From: "Sheahan, John" <John.Sheahan@xxxxxxxxxxxxx>
Date: Thu, 26 Nov 2009 11:36:52 -0500
Did you try tshark -t e


-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of haneugen@xxxxxxxx
Sent: Thursday, November 26, 2009 10:56 AM
To: wireshark-users@xxxxxxxxxxxxx
Subject: [Wireshark-users] add timestamp to fieldlist in wireshark

Hi,
I am using tshark to extract all the fields I need out of a capture and to further process them. But as you know processing becomes much easier when working with numerical values instead of having to parse strings thus I would like to add a field containing the unix timestamp (relative_time is unfortunately not sufficient) to the tshark field list. Does anybody has an idea how to do that, e.g. which field to add?
Thanks in advance.
Cheers

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe