Wireshark mailing list archives

Problem associating filter with bytes...


From: David Long <davidlongaf1984 () gmail com>
Date: Fri, 1 Nov 2013 09:26:17 -0400

I am having a problem similiar to this post.
http://permalink.gmane.org/gmane.network.wireshark.devel/10572

I ran this exact lua script

http://delog.wordpress.com/2010/09/27/create-a-wireshark-dissector-in-lua/

I made a slight change to associate the dissector with port 80 because I
have a test pcap with that traffic.  At the bottom of the page in the
screenshot (from the above link) shows a filterable field called
myproto.command that links to 0x ebff.  When I run this script it parses
out the bytes but my bytes (2 bytes from traffic) show up as text.  If this
data is text then I cannot filter or use tshark command.  Can you shed some
light on this matter?  I have tried a lot of different things and cannot
get it to work:(


Thanks,

David
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request () wireshark org?subject=unsubscribe

Current thread: