Wireshark mailing list archives
Re: text2pcap - strange packets after converting a Hex-dump
From: Shain Singh <shain.singh () gmail com>
Date: Thu, 23 Jun 2011 11:53:27 +1000
Hi Robert, Writing to file: “tshark -i eth1 –n port 443 –V –R http | grep -e
"^[0-9a-f][0-9a-f][0-9a-f][0-9a-f]" > file_hex.dump”****
The file you are writing to is just an ASCII representation of the output and not a PCAP file. I tried this command and my output file is just text and not hex. Have you tried using the -w option to output the file as a PCAP file? -- Shaineel Singh e: shain.singh () gmail com p: +61 422 921 951 w: http://buffet.shainsingh.com -- "Too many have dispensed with generosity to practice charity" - Albert Camus
___________________________________________________________________________ Sent via: Wireshark-users mailing list <wireshark-users () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-users Unsubscribe: https://wireshark.org/mailman/options/wireshark-users mailto:wireshark-users-request () wireshark org?subject=unsubscribe
Current thread:
- text2pcap - strange packets after converting a Hex-dump Ullmann, Robert (Jun 14)
- Re: text2pcap - strange packets after converting a Hex-dump Ullmann, Robert (Jun 22)
- Re: text2pcap - strange packets after converting a Hex-dump Shain Singh (Jun 22)
- Re: [Wireshark-users] text2pcap - strange packets after converting a Hex-dump Chris Maynard (Jun 28)