Wireshark mailing list archives

Re: How to identify voice traffic while passing through unconventional protocols such as DNS, SSL, SSLv3, IPA, RPCAP, RTMP


From: Seth Hall <seth () icir org>
Date: Fri, 6 Jan 2012 16:09:15 -0500


On Jan 6, 2012, at 1:43 PM, Azhar Chowdhury wrote:

We have been observing there are voice traffic passing unconventional
protocols such as the DNS, SSL, SSLv3, IPA, RPCAP, RTMP in our ISP
data pipes.
To identify this it takes long analysis in wireshark, is there any
easy way to identify voice data with source & destip using tshark or
other

Do you have packets of this happening?  I'm surprised to hear that you actually see this.

 .Seth

--
Seth Hall
International Computer Science Institute
(Bro) because everyone has a network
http://www.bro-ids.org/

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users () wireshark org>
Archives:    http://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request () wireshark org?subject=unsubscribe


Current thread: