ANNOUNCEMENT: Live Wireshark University & Allegro Packets online APAC Wireshark Training Session
April 17th, 2024 | 14:30-16:00 SGT (UTC+8) | Online

Wireshark-users: Re: [Wireshark-users] VoIP calls GRAPH button gone. FLOW button shows SIP but no

From: "COHEN, HARVEY S (ATTLABS)" <hc2182@xxxxxxx>
Date: Thu, 2 Sep 2010 11:31:46 -0400
At Anders' suggestion, I downloaded and installed
wireshark-win32-1.5.0-SVN-34038.exe from 
http://www.wireshark.org/download/automated/win32/ 
T.38 and RTP now appear correctly in the ladder diagram.

Harvey S. Cohen
AT&T Labs, Middletown, NJ
Mobile +1-908-768-5833
Office +1-732-420-4099

-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx
[mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of
wireshark-users-request@xxxxxxxxxxxxx
Sent: Wednesday, September 01, 2010 3:00 PM
To: wireshark-users@xxxxxxxxxxxxx
Subject: Wireshark-users Digest, Vol 52, Issue 1

Message: 6
Date: Tue, 31 Aug 2010 15:59:47 -0400
From: "COHEN, HARVEY S (ATTLABS)" <hc2182@xxxxxxx>
Subject: [Wireshark-users] VoIP calls GRAPH button gone. FLOW button
	
To: <wireshark-users@xxxxxxxxxxxxx>
Message-ID:
	
<FD7995637294A34F9B3841E83683FDF107BE4BCE@xxxxxxxxxxxxxxxxxxxxxxxxxxx>
Content-Type: text/plain; charset="us-ascii"

I just installed Wireshark 1.4 on WinXP. Under Telephony, VoIP Calls,
the GRAPH button has been replaced by a FLOW button. The ladder diagram
produced by the FLOW button includes the SIP and RTP, but not the T.38.
How can I make the ladder diagram display the T.38 as in previous
releases of Wireshark?

This sample has 352 T.38 packets, comprising an entire fax call:

|Time     | 12.40.234.2                           |

|         |                   | 12.20.15.34       |                   

|0.000    |         INVITE SDP ( g729 g711U telephone-event
X-nt-i...req)          |SIP From: "BCM450 FAX"<sip:[email protected]
To:<sip:[email protected]

|         |(5060)   ------------------>  (5060)   |

|0.050    |         100 Trying|                   |SIP Status

|         |(5060)   <------------------  (5060)   |

|2.041    |         180 Ringing SDP ( g729 telephone-event)
|SIP Status

|         |(5060)   <------------------  (5060)   |

|2.041    |         RTP (g729)                    |RTP Num packets:507
Duration:23.360s SSRC:0xD5D81350

|         |(28000)  <------------------  (16604)  |

|2.092    |         RTP (g729)                    |RTP Num packets:168
Duration:8.499s SSRC:0x4A0BC4D1

|         |(28000)  ------------------>  (16604)  |

|10.607   |         200 OK SDP ( g729 telephone-event)          |SIP
Status

|         |(5060)   <------------------  (5060)   |

|10.611   |         RTP (g729)                    |RTP Num packets:308
Duration:11.799s SSRC:0x4A0BC4D1

|         |(28000)  ------------------>  (16604)  |

|10.619   |         ACK       |                   |SIP Request

|         |(5060)   ------------------>  (5060)   |

|25.352   |         INVITE SDP ( t38)             |SIP Request

|         |(5060)   <------------------  (5060)   |

|25.362   |         100 Trying|                   |SIP Status

|         |(5060)   ------------------>  (5060)   |

|25.403   |         200 OK SDP ( t38)             |SIP Status

|         |(5060)   ------------------>  (5060)   |

|25.470   |         ACK       |                   |SIP Request

|         |(5060)   <------------------  (5060)   |

|47.896   |         BYE       |                   |SIP Request

|         |(5060)   ------------------>  (5060)   |

|47.943   |         200 Ok    |                   |SIP Status

|         |(5060)   <------------------  (5060)   |

 

Harvey S. Cohen

------------------------------

Message: 11
Date: Wed, 1 Sep 2010 16:44:18 +0200
From: Anders Broman <anders.broman@xxxxxxxxxxxx>
Subject: Re: [Wireshark-users] VoIP calls GRAPH button gone. FLOW
	button shows	SIP but not RTP or T.38
To: Community support list for Wireshark
	<wireshark-users@xxxxxxxxxxxxx>
Message-ID:
	
<6B227CC5FADC7D4FB06D98FCB8B0A3E2024A5DFC@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
>
	
Content-Type: text/plain; charset="us-ascii"

Hi,
Could you trye it on a development build from
http://www.wireshark.org/download/automated/
it might be related to
http://anonsvn.wireshark.org/viewvc/viewvc.cgi?view=rev&revision=33525
Please let us know the result.
Regards
Anders