Ok, this is another search-bait post - the "wireshark secondlife filters" is another frequently used search string that lands on my blog...
Of course here I suppose the audience is talking about dissectors rather than filters (nb: filter is something that you use do show only some of the packets, while dissector is something that allows you to watch the logical structure of the packet instead of the hex bytes) - just that we get the terminology straight.
I found an article on how to do your own dissector and the article on the wireshark website about your own dissector, I've almost started doing this, but wanted to search a bit first.
Sure thing, the bicycle was already invented: there is already a dissector for SL.
Copy the files as instructed, and then find the UDP SL packets, and enter "Decode As..." and in the sea of protocols find the "slmsg".
For some reason the packets look as "malformed" to me (nothing beyond the message type decodes) - so I am not sure if it is the bug in the dissector or my wireshark playing tricks - drop your note about your experience with this dissector - if it does not work, the machine code generation from message template is not too difficult, I might as well implement my own version of bike :)
Showing posts with label wireshark. Show all posts
Showing posts with label wireshark. Show all posts
Sunday, March 30, 2008
wireshark secondlife filters
Posted by
Dalien
at
1:13 PM
3
comments
Labels: wireshark
Subscribe to:
Posts (Atom)
