Wireshark mailing list archives

Re: Win10Pcap and Wireshark portable 2.2.0


From: Oscar Moreno <omoreno () gmail com>
Date: Thu, 22 Sep 2016 14:36:20 +0200

Thanks for your email Graham. I would like to be able to run Wireshark from
a USB pen drive, so I don't need to ido any installacion. When
troubleshooting performance/security issues, sometimes we won't be able to
install anything into the computer. However, I just realized that even
running Wireshark portable version, you will still need to have either
winPcap or win10Pcap installed on the computer. It looks it won be a way to
be ruining it from a USB flash drive without installing either WinPcap or
Win10Pcap in the computer.

Regards,

On Thu, Sep 22, 2016 at 2:00 PM, <wireshark-users-request () wireshark org>
wrote:

Send Wireshark-users mailing list submissions to
        wireshark-users () wireshark org

To subscribe or unsubscribe via the World Wide Web, visit
        https://www.wireshark.org/mailman/listinfo/wireshark-users
or, via email, send a message with subject or body 'help' to
        wireshark-users-request () wireshark org

You can reach the person managing the list at
        wireshark-users-owner () wireshark org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Wireshark-users digest..."


Today's Topics:

   1. Win10Pcap and Wireshark portable 2.2.0 (Oscar Moreno)
   2. Re: Win10Pcap and Wireshark portable 2.2.0 (Graham Bloice)
   3. Wiresharktraining.com (Ralph Gay)
   4. Re: Wiresharktraining.com (Saulpaugh, Chris)
   5. Re: Wiresharktraining.com (Ralph Gay)
   6. Re: Wiresharktraining.com (Saulpaugh, Chris)


----------------------------------------------------------------------

Message: 1
Date: Wed, 21 Sep 2016 14:28:49 +0200
From: Oscar Moreno <omoreno () gmail com>
To: wireshark-users () wireshark org
Subject: [Wireshark-users] Win10Pcap and Wireshark portable 2.2.0
Message-ID:
        <CAPdJ-AWFsQ8MgmRamAU36B90DvWm03d0YBG
z95n6Ww1YBq+5Aw () mail gmail com>
Content-Type: text/plain; charset="utf-8"

Hello,

I have just installed wireshark portable 2.2.0 in my USB and Win10Pcap into
my windows 10 laptop. I am now having issues with my external mouse and I
don't know if it may be related with the Win10Pcan installation. To be
honest, I was hesitant about installing Win10Pcap, but I am not yet 100%
sure that the current version of winpcap will work fine on Windows 10.
Please advice.

Thanks,
Oscar

On Wed, Sep 21, 2016 at 2:00 PM, <wireshark-users-request () wireshark org>
wrote:

Send Wireshark-users mailing list submissions to
        wireshark-users () wireshark org

To subscribe or unsubscribe via the World Wide Web, visit
        https://www.wireshark.org/mailman/listinfo/wireshark-users
or, via email, send a message with subject or body 'help' to
        wireshark-users-request () wireshark org

You can reach the person managing the list at
        wireshark-users-owner () wireshark org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Wireshark-users digest..."


Today's Topics:

   1. What does ?Raw packet data? field mean in Wireshark? (??)
   2. Re: What does ?Raw packet data? field mean in Wireshark?
      (Jaap Keuter)


----------------------------------------------------------------------

Message: 1
Date: Sun, 18 Sep 2016 11:06:51 +0800
From: ?? <jie.jiang () tongdun cn>
To: wireshark-users () wireshark org
Subject: [Wireshark-users] What does ?Raw packet data? field mean in
        Wireshark?
Message-ID: <8AA0A600-51FB-4256-99BA-4F1F58B9B0CC () tongdun cn>
Content-Type: text/plain; charset="us-ascii"



As you can see in first figure, what does that Raw packet data mean? What
is the difference between normal tcp packet in figure 2?

FYI, I'm using Wireshark 2.2.0.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160918/b9498b3f/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ???? 2016-09-13 ??8.52.23.png
Type: image/png
Size: 23833 bytes
Desc: not available
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160918/b9498b3f/attachment.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ???? 2016-09-13 ??8.53.04.png
Type: image/png
Size: 25088 bytes
Desc: not available
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160918/b9498b3f/attachment-0001.png>

------------------------------

Message: 2
Date: Tue, 20 Sep 2016 14:41:43 -0500
From: Jaap Keuter <jaap.keuter () xs4all nl>
To: Community support list for Wireshark
        <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] What does ?Raw packet data? field mean
        in Wireshark?
Message-ID: <1EF6294B-4945-4D86-A291-5D17A797F02B () xs4all nl>
Content-Type: text/plain; charset=utf-8

Hi,

The ?Raw packet data' means that there?s no link layer information
available, just upper (in this can network) layer information.

Thanks,
Jaap

On 17 Sep 2016, at 22:06, ?? <jie.jiang () tongdun cn> wrote:

<???? 2016-09-13 ??8.52.23.png>

<???? 2016-09-13 ??8.53.04.png>

As you can see in first figure, what does that Raw packet data mean?
What is the difference between normal tcp packet in figure 2?

FYI, I'm using Wireshark 2.2.0.

____________________________________________________________
_______________
Sent via:    Wireshark-users mailing list <
wireshark-users () wireshark org

Archives:    https://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-users
            mailto:wireshark-users-request () wireshark org?subject=
unsubscribe



------------------------------

_______________________________________________
Wireshark-users mailing list
Wireshark-users () wireshark org
https://www.wireshark.org/mailman/listinfo/wireshark-users


End of Wireshark-users Digest, Vol 124, Issue 7
***********************************************

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/f4aed861/attachment.html>

------------------------------

Message: 2
Date: Wed, 21 Sep 2016 13:35:01 +0100
From: Graham Bloice <graham.bloice () trihedral com>
To: Community support list for Wireshark
        <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] Win10Pcap and Wireshark portable 2.2.0
Message-ID:
        <CALcKHKpV0+piJDu7N1+fq4jQTs7NsfrKxq_
3VGaFJAC9duDbqQ () mail gmail com>
Content-Type: text/plain; charset="utf-8"

On 21 September 2016 at 13:28, Oscar Moreno <omoreno () gmail com> wrote:

Hello,

I have just installed wireshark portable 2.2.0 in my USB and Win10Pcap
into my windows 10 laptop. I am now having issues with my external mouse
and I don't know if it may be related with the Win10Pcan installation. To
be honest, I was hesitant about installing Win10Pcap, but I am not yet
100%
sure that the current version of winpcap will work fine on Windows 10.
Please advice.



Win10Pcap is a separate project that is not supported by Wireshark or
WinPcap.  You'll have to contact the Win10Pcap project for support
directly.

The current WinPcap 4.1.3 version runs happily on Windows 10.

Why are you using the portable version of Wireshark if you require capture
capabilities, why not just install the regular version which will offer to
install WinPcap for you if required?

--
Graham Bloice
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/ca21a0ce/attachment.html>

------------------------------

Message: 3
Date: Wed, 21 Sep 2016 10:04:16 -0400
From: Ralph Gay <rjgay33 () gmail com>
To: Community <wireshark-users () wireshark org>
Subject: [Wireshark-users] Wiresharktraining.com
Message-ID:
        <CACOap5bbsMut6zDMOuHxiZ_U19ePHies5Xxg+qHMcaZYyioJuQ@
mail.gmail.com>
Content-Type: text/plain; charset="utf-8"

For several days I have been unable to access the web site. Are others
having the same issue?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/a87fb7b0/attachment.html>

------------------------------

Message: 4
Date: Wed, 21 Sep 2016 14:16:41 +0000
From: "Saulpaugh, Chris" <Chris.Saulpaugh () sdsheriff org>
To: Community support list for Wireshark
        <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] Wiresharktraining.com
Message-ID:
        <BD7D4189F0389C4D90D84815A8EF7C503D456536 () MXMBCOC01 sdsheriff com>
Content-Type: text/plain; charset="utf-8"

Working fine here. Just tried?

Is your DNS having an issue?

From: wireshark-users-bounces () wireshark org [mailto:wireshark-users-
bounces () wireshark org] On Behalf Of Ralph Gay
Sent: Wednesday, September 21, 2016 7:15 AM
To: Community <wireshark-users () wireshark org>
Subject: [Wireshark-users] Wiresharktraining.com

For several days I have been unable to access the web site. Are others
having the same issue?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/9d45093d/attachment.html>

------------------------------

Message: 5
Date: Wed, 21 Sep 2016 11:14:34 -0400
From: Ralph Gay <rjgay33 () gmail com>
To: Community support list for Wireshark
        <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] Wiresharktraining.com
Message-ID:
        <CACOap5ZcfdpuuWj3i1Cqgq+G3ep2ngbYsyrmh6sU5wjp+ASWYQ@
mail.gmail.com>
Content-Type: text/plain; charset="utf-8"

Thanks for the reply. DNS resolves OK but something in our corporate
network is blocking the site. I just tried cellular and got there fine.

On Wed, Sep 21, 2016 at 10:16 AM, Saulpaugh, Chris <
Chris.Saulpaugh () sdsheriff org> wrote:

Working fine here. Just tried?



Is your DNS having an issue?



*From:* wireshark-users-bounces () wireshark org [mailto:wireshark-users-
bounces () wireshark org] *On Behalf Of *Ralph Gay
*Sent:* Wednesday, September 21, 2016 7:15 AM
*To:* Community <wireshark-users () wireshark org>
*Subject:* [Wireshark-users] Wiresharktraining.com



For several days I have been unable to access the web site. Are others
having the same issue?

____________________________________________________________
_______________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org

Archives:    https://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=
unsubscribe

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/e5a6d519/attachment.html>

------------------------------

Message: 6
Date: Wed, 21 Sep 2016 15:18:00 +0000
From: "Saulpaugh, Chris" <Chris.Saulpaugh () sdsheriff org>
To: Community support list for Wireshark
        <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] Wiresharktraining.com
Message-ID:
        <BD7D4189F0389C4D90D84815A8EF7C503D456C3C () MXMBCOC01 sdsheriff com>
Content-Type: text/plain; charset="utf-8"

Gotta love those web proxy/filtering tools!

Your Web Security Team may need to setup a proxy exception to the site
once they feel it has been properly vetted for security.

Cheers,

From: wireshark-users-bounces () wireshark org [mailto:wireshark-users-
bounces () wireshark org] On Behalf Of Ralph Gay
Sent: Wednesday, September 21, 2016 8:15 AM
To: Community support list for Wireshark <wireshark-users () wireshark org>
Subject: Re: [Wireshark-users] Wiresharktraining.com

Thanks for the reply. DNS resolves OK but something in our corporate
network is blocking the site. I just tried cellular and got there fine.

On Wed, Sep 21, 2016 at 10:16 AM, Saulpaugh, Chris <
Chris.Saulpaugh () sdsheriff org<mailto:Chris.Saulpaugh () sdsheriff org>>
wrote:
Working fine here. Just tried?

Is your DNS having an issue?

From: wireshark-users-bounces () wireshark org<mailto:wireshark
-users-bounces () wireshark org> [mailto:wireshark-users-
bounces () wireshark org<mailto:wireshark-users-bounces () wireshark org>] On
Behalf Of Ralph Gay
Sent: Wednesday, September 21, 2016 7:15 AM
To: Community <wireshark-users () wireshark org<mailto:wireshark-users@
wireshark.org>>
Subject: [Wireshark-users] Wiresharktraining.com

For several days I have been unable to access the web site. Are others
having the same issue?

____________________________________________________________
_______________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org
<mailto:wireshark-users () wireshark org>>
Archives:    https://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org<mailto:w
ireshark-users-request () wireshark org>?subject=unsubscribe

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://www.wireshark.org/lists/wireshark-users/
attachments/20160921/bf04955c/attachment.html>

------------------------------

_______________________________________________
Wireshark-users mailing list
Wireshark-users () wireshark org
https://www.wireshark.org/mailman/listinfo/wireshark-users


End of Wireshark-users Digest, Vol 124, Issue 8
***********************************************

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    https://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe

Current thread: