Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] are there any ways to filter specific DNS queries

From: Graham Bloice <graham.bloice@xxxxxxxxxxxxx>
Date: Tue, 12 Jun 2012 15:28:30 +0100

Try dns.qry.name.

 

In general, to find field names, open a capture in Wireshark, select the field of interest in the packet tree and look at the field name in the status bar.  You then need the name in ().

 

From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of nangergong
Sent: 12 June 2012 15:22
To: wireshark-users@xxxxxxxxxxxxx
Subject: [Wireshark-users] are there any ways to filter specific DNS queries

 

Hi, all:

    I want to filter out some specific DNS queries. These DNS queries are for some specific domain name or websites, for example www.example.com
    are there any ways for this filtering? Thanks!