ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: [Wireshark-users] Capture Filter Inquiry

From: Frank Barta <fbarta@xxxxxxxxx>
Date: Mon, 14 Dec 2009 10:13:30 -0500
Hello,

I was wondering if it would be possible to create a capture filter that will analyze the contents of a syslog packet and only write the packet to the file if it has a specific string in it.

IE. If the syslog message contains the word "reset", write packet to file.

Thanks!