Yes, in the Capture Options window select "Limit each packet to ____ bytes" and fill out the number of bytes you want.
Laura Chappell Founder, Wireshark University Sr. Protocol/Security Analyst, Protocol Analysis Institute **************************************************************************** ** This message is intended only for the use of the addressee and may contain information that is privileged and confidential. If you are not the intended recipient, you are hereby notified that any use and/or dissemination of this communication is strictly prohibited. If you have received this communication in error, please delete all copies of the message and its attachements and notify the sender immediately. **************************************************************************** ** From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jake Peavy Sent: Thursday, June 28, 2007 4:35 PM To: Wireshark Mailing List Subject: [Wireshark-users] Limit _certain_ packets to 67 bytes? Hi guys, this is kind of a long shot, but Wireshark has the ability to limit all packets to x bytes in the Capture Options. Is there a way to only limit packets matching a certain criteria to x bytes? In this case I need the complete DHCP and DNS packets, but don't want all the content from the UDP packets which is really blowing my .cap's up in size. Even if I could do it in post-processing somehow I'd be fine with that... TIA, -- -jp Chuck Norris, Vin Diesel and Arnold Schwarzenegger have all died and are in Heaven. Each of them hope to occupy the seat next to God. God asks Vin Diesel why he thinks he should have the seat and Vin replies, "I believe... I should have the seat because of the virtuosity in my toughness and pride." Arnie says, "I believe... that I should be the one sitting next to you because of all my achievements." God then turns to Chuck Norris, who replies with, "I believe... you are sitting in my seat."
_______________________________________________ Wireshark-users mailing list Wireshark-users@wireshark.org http://www.wireshark.org/mailman/listinfo/wireshark-users