Re: [Wireshark-dev] RFD: The Future of Memory Management in Wireshark

2012-10-26 Thread Sébastien Tandel
On Wed, Oct 24, 2012 at 11:13 AM, Evan Huus eapa...@gmail.com wrote: On Wed, Oct 24, 2012 at 8:10 AM, Sébastien Tandel sebastien.tan...@gmail.com wrote: On Wed, Oct 24, 2012 at 1:10 AM, Guy Harris g...@alum.mit.edu wrote: On Oct 18, 2012, at 6:01 PM, Evan Huus eapa...@gmail.com

Re: [Wireshark-dev] RFD: The Future of Memory Management in Wireshark

2012-10-26 Thread Sébastien Tandel
On Fri, Oct 26, 2012 at 2:36 PM, Evan Huus eapa...@gmail.com wrote: On Fri, Oct 26, 2012 at 12:14 PM, Sébastien Tandel sebastien.tan...@gmail.com wrote: On Fri, Oct 26, 2012 at 1:58 PM, Evan Huus eapa...@gmail.com wrote: On Fri, Oct 26, 2012 at 11:40 AM, Graham Bloice graham.blo

Re: [Wireshark-dev] Conference room before FOSDEM

2012-01-22 Thread Sébastien Tandel
Hi all, I'm really sad I won't be able to participate with you of this meetup. BUT since Belgium is THE best place on earth to drink some beers, what I can do, is to share with you THE best place to drink them : http://www.deliriumcafe.be/ There are more than 2000 beers there. Don't miss that

Re: [Wireshark-dev] clang core dump on plugins/giop/packet-parlay.c

2011-04-21 Thread Sébastien Tandel
Hey Stephen! might be worth sharing with clang team, don't you think? Have you tried to disable packet-parlay to check whether it is the only dissector creating such an issue? Regards, Sebastien Tandel On Thu, Apr 21, 2011 at 16:30, Stephen Fisher st...@stephen-fisher.comwrote: I'm trying

Re: [Wireshark-dev] Wireshark 1.3.1 and python dissector

2009-11-09 Thread Sébastien Tandel
Hi Joni, python dissectors is something highly experimental and not complete 'til now. I made only one commit to the tree ;) The tests I made were only with tshark and on Linux. It appears that it is not working for windows nor with wireshark. I'm not sure why in the case of wireshark. I

Re: [Wireshark-dev] How about moving from svn to git?

2009-11-08 Thread Sébastien Tandel
Hi Guy, The way I work is that I have multiple working trees for various projects, with modified versions of various source files. different working trees with svn is synonym of having several repositories on the local FS. With git, you can create local branches which could represent your

Re: [Wireshark-dev] How about moving from svn to git?

2009-11-07 Thread Sébastien Tandel
Hello, I had already made the proposal to Gerald some time ago and I'm really ok with this proposal. I started using git three years ago and even if the underlying concepts are slightly different from cvs/svn, once we're used to it, it is not possible to go back to cvs/svn. I've introduced it

Re: [Wireshark-dev] Extending wireshark with Python

2009-07-15 Thread Sébastien Tandel
On May 30, 2009, at 2:31 PM, Sébastien Tandel wrote: P.S. : I would like to add binpac within this python interpreter. But after having read the paper and thought a bit about the grammar, I think they've used Haskell (or another pure functional language for their compiler

Re: [Wireshark-dev] Extending wireshark with Python

2009-05-31 Thread Sébastien Tandel
On Sat, May 30, 2009 at 19:36, Guy Harris g...@alum.mit.edu wrote: On May 30, 2009, at 2:31 PM, Sébastien Tandel wrote: P.S. : I would like to add binpac within this python interpreter. But after having read the paper and thought a bit about the grammar, I think they've used Haskell

Re: [Wireshark-dev] Extending wireshark with Python

2009-05-31 Thread Sébastien Tandel
Hi Steve, I think you should have already learned it! :) Regards, Sebastien Tandel On Sat, May 30, 2009 at 21:50, Stephen Fisher st...@stephen-fisher.comwrote: On Fri, May 29, 2009 at 07:06:09PM -0300, S?bastien Tandel wrote: These last weeks, I spent some time to integrate python into

[Wireshark-dev] Extending wireshark with Python

2009-05-29 Thread Sébastien Tandel
Hi all, These last weeks, I spent some time to integrate python into wireshark and made the first commit today in the wireshark trunk. This way, now, it is possible to write a dissector for wireshark in python. see http://wiki.wireshark.org/Python for documentation. It is probably already

Re: [Wireshark-dev] Add restrictions to arguments of dumpcap

2009-05-07 Thread Sébastien Tandel
On Thu, May 7, 2009 at 03:05, Stephen Donnelly step...@endace.com wrote: Aaron Turner wrote: On Wed, May 6, 2009 at 8:59 PM, Michael Tüxen michael.tue...@lurchi.franken.de wrote: On May 6, 2009, at 3:40 PM, Aaron Turner wrote: I think this is confusing to many people and is more likely

Re: [Wireshark-dev] [Full-disclosure] SniffJoke 0.3 release and requestfor feedback (forw)

2009-04-27 Thread Sébastien Tandel
SniffJoke has a nice/interesting characteristic : It is *only* used by the sender *not* by the receiver. SniffJoke, thanks to some tricks - which *does not* have impact on the receiver's TCP/IP stack (for all OSes?) -, is able fool sniffers and some others network tools. I would expect

Re: [Wireshark-dev] proto_tree - proto_item

2009-03-24 Thread Sébastien Tandel
23, 2009 at 18:48, Luca Ceresoli l...@lucaceresoli.net wrote: Sébastien Tandel ha scritto: Therefore you could then do what you want with something like the following : it = proto_tree_add_text(ptvcursor_tree(cursor), ptvcursor_tvbuff(cursor), ptvcursor_current_offset(cursor

Re: [Wireshark-dev] proto_tree - proto_item

2009-03-24 Thread Sébastien Tandel
). Regards, Sebastien Tandel On Tue, Mar 24, 2009 at 10:28, l...@lucaceresoli.net l...@lucaceresoli.netwrote: Sébastien Tandel wrote: I'm not sure it's really safe and cleaner since it's working only because proto_item = proto_tree = proto_node ... On Mon, Mar 23, 2009 at 18:48, Luca

Re: [Wireshark-dev] proto_tree - proto_item

2009-02-26 Thread Sébastien Tandel
On Thu, Feb 26, 2009 at 19:26, Luca Ceresoli l...@lucaceresoli.net wrote: wsgd ha scritto: From proto.h : /** A protocol tree element. */ typedef proto_node proto_tree; /** A protocol item element. */ typedef proto_node proto_item; Wow. From my superficial knowledge of

Re: [Wireshark-dev] proto_tree - proto_item

2009-02-25 Thread Sébastien Tandel
Hi, proto_item_set_text is meant to work with proto_item* What do you mean by it compiles and works with a proto_tree*? Could you describe what is not working when you're passing a proto_item*? Compilation error, which? other? Regards, Sebastien Tandel On Tue, Feb 24, 2009 at 18:37, Luca

Re: [Wireshark-dev] Memory Question

2009-02-25 Thread Sébastien Tandel
Hi, target is what *you* want it to be. tvb_memcpy is a convenient way to copy a part of the tvbuff in a part of the memory *you* control. iow, you have *allocated* this part of memory and *you* are responsible to *free* this memory. Can I ask you where is this elsewhere and what is its

Re: [Wireshark-dev] RPM build - configure parameters

2008-09-20 Thread Sébastien Tandel
Hi Tomas, On Fri, Sep 12, 2008 at 4:11 AM, Kukosa, Tomas [EMAIL PROTECTED]wrote: Hi, when I build RPM with following sequence ./autogen.sh ./configure parameters make rpm-package it allways calls ./configure script inside rpm packaging with fiexed parameters --with-ssl=/usr

Re: [Wireshark-dev] RPM build - configure parameters

2008-09-20 Thread Sébastien Tandel
Hi Tomas, if config.status is yet present in the dist package, another way, less generic but a far lot quicker, would be to use ./config.status in the wireshark.spec.in i.s.o ./configure params Regards, Sebastien Tandel On Fri, Sep 12, 2008 at 4:11 AM, Kukosa, Tomas [EMAIL PROTECTED]wrote:

Re: [Wireshark-dev] Lint of packet-tcp.c

2008-08-15 Thread Sébastien Tandel
On Fri, Aug 15, 2008 at 2:30 AM, Jaap Keuter [EMAIL PROTECTED] wrote: Hi Chris, Thanks for taking a look. I looked at your new log also, and still wonder how lint get these 'Possible use of null pointer' results. Use of msp is guarded by ipfd_head, so this should never cause a problem. I

Re: [Wireshark-dev] checkAPIs being run every incremental build on Windows

2008-05-13 Thread Sébastien Tandel
On Fri, May 9, 2008 at 11:02 AM, Bill Meier [EMAIL PROTECTED] wrote: Having checkAPIs run in various directories during every Windows incremental build (even when there are no file changes) is a drag :) Could we maybe have checkAPIs default to not being run (via an environment variable

Re: [Wireshark-dev] checkAPIs being run every incremental build on Windows

2008-05-13 Thread Sébastien Tandel
On Tue, May 13, 2008 at 9:49 AM, Jeff Morriss [EMAIL PROTECTED] wrote: Sébastien Tandel wrote: On Fri, May 9, 2008 at 11:02 AM, Bill Meier [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: Having checkAPIs run in various directories during every Windows incremental build

Re: [Wireshark-dev] [Winpcap-users] RE: ring buffer

2008-05-09 Thread Sébastien Tandel
Hi, First of all, I wouldn't play with thread priorities unless absolutely needed. Agreed :) Second, are you using two threads just because you expect to have better performance using them? If so, I would just try to remove them and use one single thread to dump to disk, and see what

Re: [Wireshark-dev] ADNS alternative

2008-05-03 Thread Sébastien Tandel
Hi, there is also libevent which is portable, maintained and seems well-documented :-) http://monkey.org/~provos/libevent/doxygen-1.4.3/evdns_8h.html Regards, Sebastien On Fri, May 2, 2008 at 9:08 AM, Jaap Keuter [EMAIL PROTECTED] wrote: Hi, Looking at the suggestions I see this: Poslib

Re: [Wireshark-dev] ADNS alternative

2008-05-03 Thread Sébastien Tandel
Maybe this is something we should build into Wireshark since it is such an important feature? or as a separate lib using glib functions à la libevent? (which might be included in glib itself ... don't know whether they have an interest in it) Regards, Sebastien Tandel

Re: [Wireshark-dev] ADNS alternative

2008-05-03 Thread Sébastien Tandel
True, but the DNS resolver is based on the event loop library it's part of. So this would have to be used as our event loop as well. Which will bring us in conflict with the GTK event loop I guess. Right ... That's too bad :-/ Regards, Sebastien Tandel

Re: [Wireshark-dev] Re : Re: SMTP : Copying Data into a file

2008-04-30 Thread Sébastien Tandel
help me any idea on how to extract the SMTP email parameters such as *From,To,subject ,date *and from the SMTP packets Any idea is most appriciated 10Q in advance * * On Tue, Apr 29, 2008 at 7:36 PM, Sébastien Tandel [EMAIL PROTECTED] wrote: Hi Julien, I have to copy all

Re: [Wireshark-dev] SMTP : Copying Data into a file

2008-04-29 Thread Sébastien Tandel
Hi Julien, I have to copy all the data transferred into a mail (SMTP) into a file. I don't think I have to implement a new dissector because SMTP one already exist, no? Right. So I think I have to complete the existing one and add a method to create a file and copy the data in. Am I in

Re: [Wireshark-dev] libwireshark documentation?

2008-04-03 Thread Sébastien Tandel
If you have the source code, you should notice the doc directory in which stands several readme's describing the API. I did notice the doc/ directory and the various README files. However, the documentation in the doc/ directory is written for dissector writers, not for people writing

Re: [Wireshark-dev] libwireshark documentation?

2008-04-02 Thread Sébastien Tandel
On 4/1/08, Eloy Paris [EMAIL PROTECTED] wrote: On Tue, Apr 01, 2008 at 06:34:45PM +0200, Sébastien Tandel wrote: If you have the source code, you should notice the doc directory in which stands several readme's describing the API. I did notice the doc/ directory and the various README

Re: [Wireshark-dev] libwireshark documentation?

2008-04-01 Thread Sébastien Tandel
Hi, If you have the source code, you should notice the doc directory in which stands several readme's describing the API. Regards, Sebastien Tandel On Tue, Apr 1, 2008 at 1:24 AM, Eloy Paris [EMAIL PROTECTED] wrote: Is there any type of documentation for developers writing applications

Re: [Wireshark-dev] Support for BGP 4-byte AS numbers

2008-03-06 Thread Sébastien Tandel
Hi, Does anyone know if decoding 4-byte AS numbers are supported yet? If not, is anyone working on it? A quick glance at the BGP dissector's code reveals that it does recognize the capability for 4 byte AS numbers. It doesn't appear though that it can display 32-bit AS numbers, only

Re: [Wireshark-dev] Problems in compiling a plugin in wireshark-0.99.7

2008-02-14 Thread Sébastien Tandel
Hi, did you run ./autogen.sh after the makefile.am addition/modifications? Regards, Sebastien Tandel On Thu, Feb 14, 2008 at 9:35 AM, [EMAIL PROTECTED] wrote: Hi , One more observation.. When I am configuring with the comand : ./configure –prefix=/path Config.status creates the

Re: [Wireshark-dev] Portig TShark from Red Hat to WRLinux problem

2008-01-28 Thread Sébastien Tandel
Hi, if you've downloaded the source form the SVN, you have first to do ./autogen.sh Regards, Sebastien Tandel On Jan 25, 2008 9:44 AM, Michal N. [EMAIL PROTECTED] wrote: Hi, I am going to port TShark from RedHat to Wind River Linux and I have problems. I need two kinds of paths for:

Re: [Wireshark-dev] A routine to handle TLVs

2007-11-22 Thread Sébastien Tandel
Hi, I've started an implementation a while ago. Never ended though and being at the first stage of development. I can share it with you if you want. Regards, Sebastien Tandel On Nov 22, 2007 5:30 PM, Stig Bjørlykke [EMAIL PROTECTED] wrote: Hi. After looking at a dissector with TLV handling I

Re: [Wireshark-dev] A routine to handle TLVs

2007-11-22 Thread Sébastien Tandel
I indeed pick-up the ip and ipv6 options dissection functions as references. Regards, Sebastien Tandel On Nov 22, 2007 6:28 PM, Stig Bjørlykke [EMAIL PROTECTED] wrote: On 22. nov.. 2007, at 20.51, Sébastien Tandel wrote: I've started an implementation a while ago. Never ended though

Re: [Wireshark-dev] The COPYING file (our license) is a mess!

2007-11-12 Thread Sébastien Tandel
On Nov 11, 2007 7:59 PM, Stephen Fisher [EMAIL PROTECTED] wrote: On Sun, Nov 11, 2007 at 10:25:18PM +0100, Ulf Lamping wrote: While i was updating the NSIS installer, I had a look at the current COPYING file and was pretty sad reading the following preamble to the GPL: Unfortunately,