Wireshark mailing list archives
Decode as different protocol
From: Manolis Katsidoniotis <manoska () gmail com>
Date: Tue, 24 Jan 2012 17:33:06 +0200
Hello all In the attached snapshot, frame 2767 is a sip packet sent via TCP to destination port 5500. I'm assuming that because of the port number, wireshark assumes that it is a vnc frame (Virtual Network Computing). I change this by selecting the packet and using the "Decode As" option. However this needs to be done every time I open wireshark. Does anyone happen to be aware of doing this permanent (i.e. modifying some start-up file)? Thanks in advance Manolis
___________________________________________________________________________ Sent via: Wireshark-users mailing list <wireshark-users () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-users Unsubscribe: https://wireshark.org/mailman/options/wireshark-users mailto:wireshark-users-request () wireshark org?subject=unsubscribe
Current thread:
- Decode as different protocol Manolis Katsidoniotis (Jan 24)
- Re: Decode as different protocol Abhik Sarkar (Jan 24)
- Re: Decode as different protocol Manolis Katsidoniotis (Jan 24)
- Re: Decode as different protocol Anders Broman (Jan 24)
- Re: Decode as different protocol Manolis Katsidoniotis (Jan 24)
- Re: Decode as different protocol Chris Maynard (Jan 24)
- Re: Decode as different protocol Abhik Sarkar (Jan 24)