Wireshark mailing list archives

Fake MAC addresses in text2pcap and "Import from hex dump"


From: Guy Harris <guy () alum mit edu>
Date: Mon, 11 Apr 2016 17:04:05 -0700

When synthesizing an Ethernet header, text2pcap uses 0a:02:02:02:02:02 as the destination address and 0a:01:01:01:01:01 
as the source address, while "Import from hex dump" uses 20:52:45:43:56:00 as the destination and 20:53:45:4E:44:00 as 
the source.

Is there some reason why they're different?

If not, which of them *should* both be using?
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev () wireshark org>
Archives:    https://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request () wireshark org?subject=unsubscribe


Current thread: