Wireshark mailing list archives
extended radiotap parser error
From: abhinav narain <abhinavnarain10 () gmail com>
Date: Sun, 18 Nov 2012 10:10:18 -0500
hi, I am slapping a vendor radiotap parser in the kernel, but I see the 4 byte bitmap is not shown/displayed in the wireshark output; I shows the EXT bit being set, but after that follows reading the 8 bytes as the timestamp, not as 4 byte vendor bitmap followed by the TSF! , suggesting the parser is not right ! Can someone explain ? Looking at dissect_radiotap, it shows the vendor radiotap payload is maximum 6 bytes <code> proto_tree_add_item(ven_tree, hf_radiotap_ven_data, tvb, offset + 6, iter.this_arg_size - 6, ENC_NA); </code> What should I do if my payload is 12 bytes ? Because of this .. the headers following radiotap are all messed up and I can't think how to debug -Abhinav
___________________________________________________________________________ Sent via: Wireshark-dev mailing list <wireshark-dev () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-dev Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev mailto:wireshark-dev-request () wireshark org?subject=unsubscribe
Current thread:
- extended radiotap parser error abhinav narain (Nov 18)