Wireshark mailing list archives
Re: Wireshark-dev Digest, Vol 43, Issue 25
From: "Maynard, Chris" <Christopher.Maynard () GTECH COM>
Date: Mon, 14 Dec 2009 11:03:20 -0500
“ip.addr” has type FT_IPv4, not FT_STRING or FT_STRINGZ, which are the only two types that dissector_add_string() expects. I think you will likely need to write your dissector as a heuristic dissector, making use of heur_dissector_add(). Try taking a look at doc/README.heuristic. - Chris From: wireshark-dev-bounces () wireshark org [mailto:wireshark-dev-bounces () wireshark org] On Behalf Of ??(Zhen Ma) Sent: Monday, December 14, 2009 10:47 AM To: wireshark-dev () wireshark org Subject: Re: [Wireshark-dev] Wireshark-dev Digest, Vol 43, Issue 25 Hi, I am writing a Fetion(a popular IM in China) dissector which can onlydistinguishedby server address. Hence I write a dissector with followingproto_reg_handoff_fetion, "void proto_reg_handoff_fetion(void) { dissector_handle_t fetion_handle; fetion_handle = new_create_dissector_handle(dissect_fetion, proto_fetion); dissector_add_string("ip.addr", FETION_SERVER_ADDR, fetion_handle); }" However, it doesn't work. Can anybody help me with this question? Thanks~ -- Best regards! Eric,Ma CONFIDENTIALITY NOTICE: The contents of this email are confidential and for the exclusive use of the intended recipient. If you receive this email in error, please delete it from your system immediately and notify us either by email, telephone or fax. You should not copy, forward, or otherwise disclose the content of the email.
___________________________________________________________________________ Sent via: Wireshark-dev mailing list <wireshark-dev () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-dev Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev mailto:wireshark-dev-request () wireshark org?subject=unsubscribe
Current thread:
- Re: Wireshark-dev Digest, Vol 43, Issue 25 Zhen Ma (Dec 14)
- Re: Wireshark-dev Digest, Vol 43, Issue 25 Maynard, Chris (Dec 14)