Wireshark mailing list archives

Output of 'tshark -T fields' with multiple occurrences of a field


From: Sake Blok <sake () euronet nl>
Date: Wed, 14 Jul 2010 22:43:50 +0200

Hi,

Recently a lot of questions have been asked on this list (and also at Sharkfest) about the output of 'tshark -T fields 
-e <field>' when <field> had multiple occurrences in one packet. Only the last occurrence was printed by tshark. I 
submitted a fix that now prints all occurrences, aggregated by commas (which can be overwritten with -E 
aggregator=<char>).

The fix will be included in version 1.6.x as well as in the next development release (1.5.x). For the impatient, please 
use an automated build from http://www.wireshark.org/download/automated/ (look for a version 33504 or higher).

Enjoy!
Cheers,


Sake

___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request () wireshark org?subject=unsubscribe


Current thread: