Wireshark mailing list archives

rawshark error


From: <atdev.queries () wipro com>
Date: Tue, 9 Feb 2010 16:30:38 +0530


Hi



I am unable to get the output of Rawshark.

I have a packet structure as below when decoded with Wireshark.



Ethernet II

802.1Q VLAN

IP











When I execute the following I am getting following error:

$  rawshark -d encap:105 -r packet-name -F ip.src  -s

                  0 FT_IPv4 BASE_NONE -

                  rawshark: "packet-name" is neither an interface nor a pipe



How to use the rawshark to get the output of Source IP address in the packet?



Can anyone help me?



Regards,

Atdev


Please do not print this email unless it is absolutely necessary. 

The information contained in this electronic message and any attachments to this message are intended for the exclusive 
use of the addressee(s) and may contain proprietary, confidential or privileged information. If you are not the 
intended recipient, you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately 
and destroy all copies of this message and any attachments. 

WARNING: Computer viruses can be transmitted via email. The recipient should check this email and any attachments for 
the presence of viruses. The company accepts no liability for any damage caused by any virus transmitted by this email. 

www.wipro.com
___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe

Current thread: