Wireshark mailing list archives
Re: For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information.
From: Guy Harris <guy () alum mit edu>
Date: Thu, 15 Sep 2011 10:07:26 -0700
On Sep 15, 2011, at 6:39 AM, Chris Maynard wrote:
But the -e option isn't valid without -T fields, so that implies that -T fields was erroneously omitted in the wish list request, does it not?
No. It could also imply that they wanted to have the "-e" option also work with "-T", but, in the case where "-T text" was specified (or implied by the absence of a "-T" flag) rather than "-T fields", they wanted it to specify protocols or individual fields to expand in the output. ___________________________________________________________________________ Sent via: Wireshark-dev mailing list <wireshark-dev () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-dev Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev mailto:wireshark-dev-request () wireshark org?subject=unsubscribe
Current thread:
- For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information. Yee Man Bergstrom (Sep 13)
- Re: For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections and display the TCP port information. Chris Maynard (Sep 14)
- Re: For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information. Guy Harris (Sep 14)
- Re: [Wireshark-dev] For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information. Chris Maynard (Sep 15)
- Re: For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information. Guy Harris (Sep 15)
- Re: [Wireshark-dev] For TShark, provide a way to control the output format. E.g., 'tshark -e "ip udp tcp.port"' would expand the IP and UDP sections, and display the TCP port information. Chris Maynard (Sep 15)