[Wireshark-dev] Wireshark and real-time network issue detection?

2006-10-30 Thread Lars Ruoff
Hi list, I wonder if Wireshark could be extended to provide real-time network issue detection and if there was any interest in the community to implement this feature. Let me explain. What i would like to have is the following: Wireshark (tshark to be precise) would be run from another

Re: [Wireshark-dev] Wireshark and real-time network issue detection?

2006-10-30 Thread frederic heem
Hi, Did you have a look at www.snort.org ? It may be what you are looking for. Frederic Heem. Alle 15:03, lunedì 30 ottobre 2006, Lars Ruoff ha scritto: Hi list, I wonder if Wireshark could be extended to provide real-time network issue detection and if there was any interest in the

Re: [Wireshark-dev] Wireshark and real-time network issue detection?

2006-10-30 Thread Lars Ruoff
Hi, frederic heem wrote: Hi, Did you have a look at www.snort.org ? It may be what you are looking for. I had a look at it (although a short one i admit). From what i can see from a first glance, - snort provides nearly no means of decoding (and thus creating rules for) higher level

Re: [Wireshark-dev] Wireshark and real-time network issue detection?

2006-10-30 Thread frederic heem
Alle 15:32, lunedì 30 ottobre 2006, Lars Ruoff ha scritto: Hi, frederic heem wrote: Hi, Did you have a look at www.snort.org ? It may be what you are looking for. I had a look at it (although a short one i admit). Fine, at least you've had a look a it. Actually, I'm looking for the

Re: [Wireshark-dev] Wireshark and real-time network issue detection?

2006-10-30 Thread Lars Ruoff
frederic heem wrote: Actually, I'm looking for the almost the same feature: The monitor asks tshark to be advised when a packet matches a filter. As soon as tshark received such a packet, it signals the application that has requested such packet. That would be a special (trivial) case of