Wireshark mailing list archives

Re: SNMP Users Table


From: "Frank Bulk" <frnkblk () iname com>
Date: Thu, 7 Jun 2012 21:53:41 -0500

Are you using Wireshark's latest version?  It shouldn't be segfaulting.

-----Original Message-----
From: wireshark-users-bounces () wireshark org
[mailto:wireshark-users-bounces () wireshark org] On Behalf Of Kevin Slonka
Sent: Thursday, June 07, 2012 10:14 AM
To: wireshark-users () wireshark org
Subject: [Wireshark-users] SNMP Users Table

I am trying to debug what a certain piece of software is doing to a
piece of hardware via SNMP packets.  I got the packet capture and
tried to modify the SNMP users table using the auth and priv passwords
I set, however I get inconsistent results.  At no point did anything
work.  Wireshark always tells me the auth failed and the encryptedPDU
always complains about not being in increments of 8.  However
sometimes when I change values in the users table Wireshark will
segfault.  I have not gotten it to correctly show me the insides of an
SNMP packet once.

I thought it might be my fault, so I tried the sample provided on the
Wiki, http://wiki.wireshark.org/SampleCaptures#SNMP.  I get the exact
same results.  It never works and sometimes segfaults.  The Wireshark
documentation is also lacking as it assumes you know everything about
how Wireshark works.

Has anyone successfully decrypted SNMP packets in Wireshark that could
give me some instructions on how to do it?

Thanks for your time,
Kevin
___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
 
mailto:wireshark-users-request () wireshark org?subject=unsubscribe


___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe


Current thread: