Re: [Wireshark-dev] Query

2012-03-01 Thread RUOFF, LARS (LARS)** CTR **
... not that there would have been any examples of recent submissions with that problem of course! (And if there would have been, any similarity is purely coincidental!) ;-) Lars From: wireshark-dev-boun...@wireshark.org [mailto:wireshark-dev-boun...@wireshark

Re: [Wireshark-dev] Bug 6844 - Universal Alcatel Protocol - Reloaded - Review for check-in requested

2012-02-15 Thread RUOFF, LARS (LARS)** CTR **
is that dissection without fields is only mildly useful. Wireshark's real power is those fields which allow you to filter, graph, and do other good stuff. RUOFF, LARS (LARS)** CTR ** wrote: > You're right, Anders, > I'll note this for further improvement. > Any chances

Re: [Wireshark-dev] Bug 6844 - Universal Alcatel Protocol - Reloaded - Review for check-in requested

2012-02-15 Thread RUOFF, LARS (LARS)** CTR **
>> >>> Should something like the above check be added to one of the check >>> scripts to complain if the add_text percentage is above 10% or so? >> Done in r40930 > > Good! --- end snip --- Regards Anders -----Original Message- From: wireshark-dev-boun...@wir

[Wireshark-dev] Bug 6844 - Universal Alcatel Protocol - Reloaded - Review for check-in requested

2012-02-15 Thread RUOFF, LARS (LARS)** CTR **
Hi, i've been maintaining an inhouse dissector for Alcatel-Lucent Enterprise's Universal Alcatel (UA) protocol and sub-protocols for many years now. To my regret, this protocol suite used to be classified and i didn't get the authorization for releasing it to the Wireshark tree as open source.

[Wireshark-dev] Win32 build from 1.6.3 source tarball: svnversion.h missing and not generated?

2011-11-02 Thread RUOFF, LARS (LARS)** CTR **
Hi, While trying to compile 1.6.3 from wireshark-1.6.3.tar.bz2 on Windows, compiler complains that i have svnversion.h missing. Forcing nmake -f Makefile.nmake svnversion.h gives... rm -f svnversion.h perl make-version.pl This is not a SVN build. Thus, svnversion.h is not genera

Re: [Wireshark-dev] ASN.1 dissector non-functional?

2011-08-09 Thread RUOFF, LARS (LARS)** CTR **
e trying to do and/or the file you you are trying to decode, I have another look. Thanks, Graeme On 5 August 2011 10:00, RUOFF, LARS (LARS)** CTR ** wrote: > Hi, > > in Wireshark 1.6.1, i'm unable to "Decode As ..." ASN.1 It works in > Ethereal 0.10.5 (yes, i know

[Wireshark-dev] ASN.1 dissector non-functional?

2011-08-05 Thread RUOFF, LARS (LARS)** CTR **
Hi, in Wireshark 1.6.1, i'm unable to "Decode As ..." ASN.1 It works in Ethereal 0.10.5 (yes, i know, that's old) for the same trace file. Anybody knows why and when the ASN1 dissector got dysfunctional? Am i missing some preference settings? Does anybody have an example of a functional ASN1 disse

Re: [Wireshark-dev] RTP Jitter calculation (Telephony->RTP Stream Analysis)

2011-04-06 Thread RUOFF, LARS (LARS)** CTR **
) -Original Message- From: wireshark-dev-boun...@wireshark.org [mailto:wireshark-dev-boun...@wireshark.org] On Behalf Of RUOFF, LARS (LARS)** CTR ** Sent: mercredi 6 avril 2011 18:42 To: Developer support list for Wireshark Subject: Re: [Wireshark-dev] RTP Jitter calculation (Telephony->RTP Str

Re: [Wireshark-dev] RTP Jitter calculation (Telephony->RTP Stream Analysis)

2011-04-06 Thread RUOFF, LARS (LARS)** CTR **
Hi, Oh my, it's been a long time since I have written that code and i didn't check the diffs that have been contributed since, but i'll give it a try... (Code uses real time units instead of RTP timestamp units but that doesn't matter for the argument) Saved values from previous packet: statinf

Re: [Wireshark-dev] decoding multiple packets to a protocol

2010-12-17 Thread RUOFF, LARS (LARS)** CTR **
Damn, Jaap beat me again... From: wireshark-dev-boun...@wireshark.org [mailto:wireshark-dev-boun...@wireshark.org] On Behalf Of Jaap Keuter Sent: vendredi 17 décembre 2010 17:19 To: Developer support list for Wireshark Subject: Re: [Wireshark-dev] decoding multipl

Re: [Wireshark-dev] decoding multiple packets to a protocol

2010-12-17 Thread RUOFF, LARS (LARS)** CTR **
Hi, For RTP, there's a heuristic: Try Preferences/RTP/Try to decode RTP outside of conversations = yes. Regards, Lars From: wireshark-dev-boun...@wireshark.org [mailto:wireshark-dev-boun...@wireshark.org] On Behalf Of Romel Khan Sent: vendredi 17 décembre 2010 1

Re: [Wireshark-dev] SIP Registrations Module

2010-11-16 Thread RUOFF, LARS (LARS)** CTR **
Hello Danny, i'm working a lot with SIP traces, including registration issues. I don't have any urgent need for this but it could be helpful in some occasions. Do you plan to track the registration time ("Expires") also? I.e. will your module be able to tell for any given time wether a given end

Re: [Wireshark-dev] Voip Graph: Port numbers too faint?

2010-05-04 Thread RUOFF, LARS (LARS)** CTR **
0x64ff, 0x64ff, 0x64ff}, {0, 0x25ff, 0x25ff, 0x25ff} /*{0, 0x7fff, 0x7fff, 0x7fff}*/ }; Regards Anders -Original Message- From: wireshark-dev-boun...@wireshark.org [mailto:wireshark-dev-boun...@wireshark.org] On Behalf Of RUOFF, LARS (LARS)** CTR

[Wireshark-dev] Voip Graph: Port numbers too faint?

2010-05-03 Thread RUOFF, LARS (LARS)** CTR **
Hi folks, I really like the new pastel color tones of VoIP Graph, but honestly, the port numbers are barely visible now. (see attached png) Could they be made a little darker? Regards, Lars wireshark 1.3.4 (SVN Rev 32342 from /trunk) Copyright 1998-2010 Gerald Combs and cont