[Wireshark-users] [Off topic] EFF used Wireshark in Comcast Investigation

2007-11-28 Thread Soh Kam Yung
ected TCP reset packets. Previous independent research conducted by the AP is consistent with the findings published by the EFF. [...] ===== -- Soh Kam Yung my Google Reader Shared links: (http://www.google.com/reader/shared/16851815156817689753) my Google Reader Shared SFAS links: (http://www.go

Re: [Wireshark-users] WPA decryption failing

2007-05-21 Thread Soh Kam Yung
wTo%29) and try to decrypt the sample capture provided on that page. You can also compare the setup against yours to see what might be causing the problem on your end. Regards, Kam-Yung -- Soh Kam Yung my delicious links: (http://del.icio.us/SohKamYung) my simpy

Re: [Wireshark-users] Viewing TKIP-encrypted data

2007-04-12 Thread Soh Kam Yung
k as a malformed EAPOL packet. Packet No. 249 is an example of a broadcast packet that is not decrypted by Wireshark. I have filed a bug on this (http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1420). Hopefully, this can be resolved in a future version of Wireshark. Regards, Kam-Yung -- So

Re: [Wireshark-users] Wireshark 802.11 WPA Decryption unable to get Group Keys

2007-02-28 Thread Soh Kam Yung
(one for WPA, one for WPA-2 as the group key decryption issue is slightly different in each case) with sample captures. Regards, Kam-Yung -- Soh Kam Yung my delicious links: (http://del.icio.us/SohKamYung) my simpy links: (http://www.simpy.com/user/kysoh/links) ___

[Wireshark-users] Wireshark 802.11 WPA Decryption unable to get Group Keys

2007-02-28 Thread Soh Kam Yung
groupwise keys to be malformed packets. As a result, broadcast data (like ARP and DHCP packets) do not get decoded. Has anybody else encountered this problem? Regards, Kam-Yung -- Soh Kam Yung my delicious links: (http://del.icio.us/SohKamYung) my simpy links: (http://www.simpy.

Re: [Wireshark-users] Questions about the latest release

2007-02-07 Thread Soh Kam Yung
as part of the pairwise handshake) and, depending on AP settings, may be periodically updated. To know more, you'll need to read up the IEEE 802.11i spec as well as the Wi-Fi Association's WPA/WPA2 specs (which differs in some ways from 802.11i). Regards, Kam Yung -- Soh Kam Yung

Re: [Wireshark-users] What about a Wireshark forum?

2006-10-03 Thread Soh Kam Yung
king RSS feeds out of mailing list postings. See (http://www.wireshark.org/lists/) for the location of the gmane feeds for the wireshark mailing lists. Regards, Kam Yung -- Soh Kam Yung my delicious links: (http://del.icio.us/SohKamYung) my simpy links: (http://www.simpy

Re: [Wireshark-users] 802.11 frame data not decoded

2006-08-10 Thread Soh Kam Yung
c.cap file generated by airdecap and can see the data properly. Note: this will cause 802.11 management packets to be lost in the output-dec.cap file. This combination of tools works for me; maybe it will work for you also. Kismet should be able to do the job of tcpdump - just don't let it to

Re: [Wireshark-users] 802.11 frame data not decoded

2006-08-10 Thread Soh Kam Yung
lts using Ethereal 0.10-12, 0.99.0, > and Wireshark 0.99.2 (all on OS X 10.4.7). Fiddling with the > Wireshark protocol options for IEEE 802.11 didn't help. What am I > doing wrong? > > 802.11 frame exported as text: > > > > > Thanks, > Steve -- Soh Kam Yung my simpy lin

Re: [Wireshark-users] Using Wireshark to capture signal strength and data rate for 802.11 packets

2006-07-02 Thread Soh Kam Yung
n cards under linux and BSD and see what happens. Regards, Kam-Yung -- Soh Kam Yung my simpy links: (http://www.simpy.com/user/kysoh/links) ___ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users

[Wireshark-users] Using Wireshark to capture signal strength and data rate for 802.11 packets

2006-06-30 Thread Soh Kam Yung
ooking for. Regards, Kam-Yung -- Soh Kam Yung my simpy links: (http://www.simpy.com/user/kysoh/links) ___ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users