Wireshark mailing list archives
Dissecting a field that has non-octet bit boundaries
From: Richard Sharpe <realrichardsharpe () gmail com>
Date: Thu, 22 Jan 2015 20:46:15 -0800
Hi Folks, I am trying to dissect MS-RSVD further since I have a capture of some of that funky SCSI tunneled over SMB2/3. Anyway, they have a 4-byte header that consists of: 1 byte: Protocol ID 12 bits: Protocol Version 12 bits: Operation Code How do I deal with this. It does not seem like proto_tree_add_bitmask is the correct thing. -- Regards, Richard Sharpe (何以解憂?唯有杜康。--曹操) ___________________________________________________________________________ Sent via: Wireshark-dev mailing list <wireshark-dev () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-dev Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev mailto:wireshark-dev-request () wireshark org?subject=unsubscribe
Current thread:
- Dissecting a field that has non-octet bit boundaries Richard Sharpe (Jan 22)
- Re: Dissecting a field that has non-octet bit boundaries yannick omnes (Jan 22)
- Re: Dissecting a field that has non-octet bit boundaries Anders Broman (Jan 23)
- Re: Dissecting a field that has non-octet bit boundaries Richard Sharpe (Jan 23)
- Re: Dissecting a field that has non-octet bit boundaries Anders Broman (Jan 23)
- Re: Dissecting a field that has non-octet bit boundaries yannick omnes (Jan 22)