obnox/wireshark/wip.git
16 years agoUpdate do use the -X and -T asn2wrs flags.
etxrab [Sun, 4 Nov 2007 18:37:06 +0000 (18:37 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23360 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate do use the -X and -T asn2wrs flags.
etxrab [Sun, 4 Nov 2007 18:34:13 +0000 (18:34 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23359 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate do use the -X and -T asn2wrs flags.
etxrab [Sun, 4 Nov 2007 18:23:47 +0000 (18:23 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23358 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate do use the -X and -T asn2wrs flags.
etxrab [Sun, 4 Nov 2007 18:16:41 +0000 (18:16 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23357 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate do use the -X and -T asn2wrs flags.
etxrab [Sun, 4 Nov 2007 17:57:31 +0000 (17:57 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23356 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdded svn:ignore targets for h282,h283 and t125.
stig [Sun, 4 Nov 2007 17:27:42 +0000 (17:27 +0000)]
Added svn:ignore targets for h282,h283 and t125.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23355 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate do use the -X and -T asn2wrs flags.
stig [Sun, 4 Nov 2007 17:24:25 +0000 (17:24 +0000)]
Update do use the -X and -T asn2wrs flags.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23354 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoLDAP with -T
etxrab [Sun, 4 Nov 2007 17:16:01 +0000 (17:16 +0000)]
LDAP with -T

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23353 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoSNMP with option -X and -T
etxrab [Sun, 4 Nov 2007 16:47:30 +0000 (16:47 +0000)]
SNMP with option -X and -T

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23352 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agofollow_tcp_stats -> follow_stats
etxrab [Sun, 4 Nov 2007 08:11:24 +0000 (08:11 +0000)]
follow_tcp_stats -> follow_stats

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23351 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoA bit of a readme for the Wireshark Portable packaging. Includes details of the NSIS...
gal [Sat, 3 Nov 2007 20:27:48 +0000 (20:27 +0000)]
A bit of a readme for the Wireshark Portable packaging. Includes details of the NSIS plug-in required.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23350 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoat least mention in a comment, that you'll need the FindProcDLL plug-in
ulfl [Sat, 3 Nov 2007 08:48:12 +0000 (08:48 +0000)]
at least mention in a comment, that you'll need the FindProcDLL plug-in

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23349 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix distcheck after my prior 2 commits
sfisher [Sat, 3 Nov 2007 06:23:02 +0000 (06:23 +0000)]
Fix distcheck after my prior 2 commits

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23348 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoThe rest of the Follow UDP Stream check-in
sfisher [Sat, 3 Nov 2007 04:46:22 +0000 (04:46 +0000)]
The rest of the Follow UDP Stream check-in

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23347 f5534014-38df-0310-8fa8-9805f1628bb7

16 years ago- Future improve/clean up the now generic follow stream code
sfisher [Sat, 3 Nov 2007 04:45:35 +0000 (04:45 +0000)]
- Future improve/clean up the now generic follow stream code

- Add "Follow UDP Stream" feature

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23346 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd partial support for TightVNC packet dissection (work in progress).
sfisher [Sat, 3 Nov 2007 03:03:02 +0000 (03:03 +0000)]
Add partial support for TightVNC packet dissection (work in progress).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23345 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUpdate my email address.
martinm [Fri, 2 Nov 2007 23:40:10 +0000 (23:40 +0000)]
Update my email address.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23344 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoImprove some comments (and test committing from Windows
martinm [Fri, 2 Nov 2007 22:34:18 +0000 (22:34 +0000)]
Improve some comments (and test committing from Windows
build).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23343 f5534014-38df-0310-8fa8-9805f1628bb7

16 years ago- Rename EAPSv2 to ESL (EAPS shared link).
jmayer [Fri, 2 Nov 2007 20:00:03 +0000 (20:00 +0000)]
- Rename EAPSv2 to ESL (EAPS shared link).
- Some small improvements to ESL decoding.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23342 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agochange some extreme wkas and update manuf
jmayer [Fri, 2 Nov 2007 19:57:41 +0000 (19:57 +0000)]
change some extreme wkas and update manuf

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23341 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoInitial Portable Apps (www.portableapps.com) packaging to produce a "Wireshark Portab...
gal [Fri, 2 Nov 2007 13:47:23 +0000 (13:47 +0000)]
Initial Portable Apps (portableapps.com) packaging to produce a "Wireshark Portable" (WSP) distribution.

This allows Wireshark to be run from any USB stick, unlike the U3 packaging which must be installed on a specific U3 device.

The packaging basically builds upon the U3 distribution so new libraries/config only need to be added to the U3 makefile to update both distributions.

It still takes a "dumb" approach to WinPcap - installing it if it is not already installed and removing it (if WSP installed it) when Wireshark quits. (This is worse than the U3 packaging which only uninstalls WinPcap when the device is removed.) Really must talk to the WinPcap guys to see how we can make this less intrusive.

I am talking to John Haller (the Portable Apps guy) about fine tuning the distribution.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23340 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agonew H.282 (RDC) and H.283 (LCT) dissectors
kukosa [Fri, 2 Nov 2007 12:18:01 +0000 (12:18 +0000)]
new H.282 (RDC) and H.283 (LCT) dissectors

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23339 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agodisplay message type in the info column
kukosa [Fri, 2 Nov 2007 08:34:12 +0000 (08:34 +0000)]
display message type in the info column

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23338 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agodisplay SRTP isntead of RTP if stream is established like a SRTP
kukosa [Fri, 2 Nov 2007 07:43:49 +0000 (07:43 +0000)]
display SRTP isntead of RTP if stream is established like a SRTP

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23337 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agosetup SRTP stream for RTP/SAVP media protocol
kukosa [Fri, 2 Nov 2007 07:41:56 +0000 (07:41 +0000)]
setup SRTP stream for RTP/SAVP media protocol

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23336 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoLDAP wasn't 'fixed' to handle -T option...
etxrab [Thu, 1 Nov 2007 22:29:02 +0000 (22:29 +0000)]
LDAP wasn't 'fixed' to handle -T option...

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23335 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd a text media type.
etxrab [Thu, 1 Nov 2007 22:14:46 +0000 (22:14 +0000)]
Add a text media type.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23334 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoGet rid of most of the legacy oid stuff.
etxrab [Thu, 1 Nov 2007 22:07:43 +0000 (22:07 +0000)]
Get rid of most of the legacy oid stuff.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23333 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agosome updates to the frsrpc dissector
sahlberg [Thu, 1 Nov 2007 20:33:35 +0000 (20:33 +0000)]
some updates to the frsrpc dissector
dissect parts of the TLV blob that is sent during file replication

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23332 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoChange:
etxrab [Thu, 1 Nov 2007 19:36:39 +0000 (19:36 +0000)]
Change:
get_oid_str_name() -> oid_resolved_from_string()
get_oid_name() -> oid_resolved_from_encoded()

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23331 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix a decoder type.
martinm [Thu, 1 Nov 2007 15:15:33 +0000 (15:15 +0000)]
Fix a decoder type.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23330 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoremoved unnecessary forward class declarations
kukosa [Thu, 1 Nov 2007 12:36:27 +0000 (12:36 +0000)]
removed unnecessary forward class declarations

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23329 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agobetter built-in X.880 support
kukosa [Thu, 1 Nov 2007 11:56:33 +0000 (11:56 +0000)]
better built-in X.880 support
forward declarations of OPERATION and ERROR classes are not necessary when Remote-Operations-Information-Objects.asn itself is compiled

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23328 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoset data for IV always
kukosa [Thu, 1 Nov 2007 10:50:01 +0000 (10:50 +0000)]
set data for IV always

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23327 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoRemove add_oid_str_name.
etxrab [Thu, 1 Nov 2007 07:37:24 +0000 (07:37 +0000)]
Remove add_oid_str_name.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23326 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUse oid_add_from_string for adding names.
etxrab [Wed, 31 Oct 2007 23:11:15 +0000 (23:11 +0000)]
Use oid_add_from_string for adding names.
fix compil of gsmmap and inap.
Note xcopy of gsmmap does not work(rename packet-gsm_map -> packet-gsmmap ?)

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23325 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUse oid_add_from_string for adding names.
etxrab [Wed, 31 Oct 2007 21:24:16 +0000 (21:24 +0000)]
Use oid_add_from_string for adding names.
(gsmmap and inap does not compile at the moment).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23324 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoadd forward class declarations which are necessary to compile Remote-Operations-Infor...
kukosa [Wed, 31 Oct 2007 15:42:52 +0000 (15:42 +0000)]
add forward class declarations which are necessary to compile Remote-Operations-Information-Objects.asn

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23323 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAvoid casting directly from int to pointers. (It doesn't work on 64-bit linux)
bondolo [Wed, 31 Oct 2007 15:16:33 +0000 (15:16 +0000)]
Avoid casting directly from int to pointers. (It doesn't work on 64-bit linux)

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23322 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agosmall improvement in class fields handling
kukosa [Wed, 31 Oct 2007 12:57:01 +0000 (12:57 +0000)]
small improvement in class fields handling

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23321 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoaccept VariableTypeValueFieldSpec syntax and ParameterizedObjectClass syntax
kukosa [Wed, 31 Oct 2007 09:33:54 +0000 (09:33 +0000)]
accept VariableTypeValueFieldSpec syntax and ParameterizedObjectClass syntax

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23320 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agomove 'all: generate_dissector' rule from Makefile.inc.nmake to Makefile.preinc.nmake...
kukosa [Wed, 31 Oct 2007 09:22:56 +0000 (09:22 +0000)]
move 'all: generate_dissector' rule from Makefile.inc.nmake to Makefile.preinc.nmake to be the 1st one in the resulting makefile

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23319 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUse oid_add_from_string for adding names.
etxrab [Wed, 31 Oct 2007 08:26:52 +0000 (08:26 +0000)]
Use oid_add_from_string for adding names.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23318 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUse oid_add_from_string for adding names, names changed to short form.
etxrab [Wed, 31 Oct 2007 07:50:59 +0000 (07:50 +0000)]
Use oid_add_from_string for adding names, names changed to short form.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23317 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Martin Peylo:
etxrab [Wed, 31 Oct 2007 07:49:39 +0000 (07:49 +0000)]
From Martin Peylo:
This uncomments the OID registration of pkixcmp and adds 2 Cryptlib OIDs
Changed to use oid_add_from_string for adding names.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23316 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Stefano Picerno:
etxrab [Wed, 31 Oct 2007 07:47:47 +0000 (07:47 +0000)]
From Stefano Picerno:
Makes more fields searchable
Also fixes some typos and indentation errors
Fixes bug http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1802 for edonkey
dissector: every field defined by the dissector is now contained under the
PROTOABBREV=edonkey "root" key

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23315 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Christopher McKenzie: Zero out our SAs before we use them.
gerald [Wed, 31 Oct 2007 00:15:17 +0000 (00:15 +0000)]
From Christopher McKenzie: Zero out our SAs before we use them.

Remove an unneeded for loop in AirPDcapCleanKeys(), and make it static.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23314 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix some null dereferences.
gerald [Tue, 30 Oct 2007 22:22:14 +0000 (22:22 +0000)]
Fix some null dereferences.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23313 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoMinor correction to protocol behavior handling when security type "none" is
sfisher [Tue, 30 Oct 2007 16:32:26 +0000 (16:32 +0000)]
Minor correction to protocol behavior handling when security type "none" is
selected by the client.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23312 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoChange a few g_string_append_printf() (GTK2 only) calls to g_strdup_printf()
sfisher [Tue, 30 Oct 2007 05:49:41 +0000 (05:49 +0000)]
Change a few g_string_append_printf() (GTK2 only) calls to g_strdup_printf()
and g_string_append() to work on GTK 1.2 also.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23311 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix for issue #1 in bug #1947 by doing a major overhaul of how the first
sfisher [Tue, 30 Oct 2007 04:42:42 +0000 (04:42 +0000)]
Fix for issue #1 in bug #1947 by doing a major overhaul of how the first
nine or so packets are handled to accommodate authentication type none and
to allow cleaner future improvements.  Includes a few touch ups to the
rest of the dissector as well.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23310 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoasn2wrs
kukosa [Mon, 29 Oct 2007 19:25:37 +0000 (19:25 +0000)]
asn2wrs
 - parameterized object class assignment
 - octet string with extensible size constraint
 - RELATIVE-OID type (still not supported in packet-per/ber)
packet-per
 - octet string with extensible size constraint
more dissect_per_... functions exported from libwireshark.dll
PER dissectors regenerated
add forgotten packet-h323-template.h
fix svn properties for h323 files

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23309 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd comment for Windows build re config.nmake and .h file changes requiring distclean
wmeier [Mon, 29 Oct 2007 15:11:20 +0000 (15:11 +0000)]
Add comment for Windows build re config.nmake and .h file changes requiring distclean

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23308 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoadd a asn2wrs generated T.125 MCP dissector
sahlberg [Mon, 29 Oct 2007 11:32:07 +0000 (11:32 +0000)]
add a asn2wrs generated T.125 MCP dissector

This dissects the initial Connect-Initial and Connect-confirm pdus of
setting up t.125

The dissector needs to be enhanced to also decode the data payload so
that it can decode any furhter packets on the connection after these two
initial handshake packets

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23307 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoregister tpkt for port 3389 and use x224 as the subdissector for this
sahlberg [Mon, 29 Oct 2007 07:16:49 +0000 (07:16 +0000)]
register tpkt for port 3389 and use x224 as the subdissector for this
port

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23306 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoadd x224 to the makefile
sahlberg [Mon, 29 Oct 2007 07:15:29 +0000 (07:15 +0000)]
add x224 to the makefile

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23305 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoadd an initial x.224 dissector it is very incomplete
sahlberg [Mon, 29 Oct 2007 07:14:50 +0000 (07:14 +0000)]
add an initial x.224 dissector    it is very incomplete

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23304 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoWhen there are multiple conversations with the same key, conversation_lookup_hashtabl...
sake [Mon, 29 Oct 2007 06:54:25 +0000 (06:54 +0000)]
When there are multiple conversations with the same key, conversation_lookup_hashtable() did not return the correct conversation for the first packet of a conversation (ie when frame_num == conversation->setup_frame).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23303 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoInclude winposixtypes.h only if building with GNUTLS; Bug 1942: part 2 of 2 of fix.
wmeier [Mon, 29 Oct 2007 01:14:51 +0000 (01:14 +0000)]
Include winposixtypes.h only if building with GNUTLS; Bug 1942: part 2 of 2 of fix.
asn1 template file plus generated .[hc] files;
Note that the generated files include changes which are a result of previous
changes to snmp.cnf (SVN #23252) and of other changes (eg: svn 21145).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23302 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoInclude winposixtype.h only if building with GNUTLS; Bug #1949: Part 1 of fix
wmeier [Mon, 29 Oct 2007 00:58:06 +0000 (00:58 +0000)]
Include winposixtype.h only if building with GNUTLS; Bug #1949: Part 1 of fix
[asn1 template plu generated .c file]

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23301 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoBug 1227 : From Frederic Heem:
sake [Sun, 28 Oct 2007 23:49:15 +0000 (23:49 +0000)]
Bug 1227 : From Frederic Heem:

* modify CMakeInstallDirs.cmake according to cmake developper wishes
* FindDBUSGLIB.cmake fixes
* Add HAVE_CHOWN
* remove DBus from CMakeLists.txt.
* DBus support has its own application (capdbus) and is in a self contained directory. A separate patch will be provided

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23300 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoThis patch is a remake of SVN 22762:
sake [Sun, 28 Oct 2007 23:38:43 +0000 (23:38 +0000)]
This patch is a remake of SVN 22762:

When doing TCP_SEQ analysis, if the packet is a SYN, then it's
not a lost packet but the tcp ports are being reused. This is often
seen in load-balanced environments where client ports are preserved
on the server-side.

This time it is fixed by creating a new conversation whenever a
new SYN is received for an existing conversation. This fixes the
following:

- bug 1680: Error in TCP Sequence number analysis
- TCP-conversation timestamps for new TCP-sessions with the addresses
  and ports as a previous TCP-conversation in the trace-file.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23299 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoBug 1751: From Allan M. Madsen :
sake [Sun, 28 Oct 2007 18:52:45 +0000 (18:52 +0000)]
Bug 1751: From Allan M. Madsen :

When trying to open a pcap file with the new pseudo-header/DLT (using SVN
version, changelist 23283) I get the error message:
"libpcap: ERF file has a 13-byte packet, too small to have even an ERF
pseudo-header".

After reviewing Paolo's patch I found that there are 2 places with missing
breaks in switch case structures.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23298 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoSmall fixes:
wmeier [Sun, 28 Oct 2007 18:12:52 +0000 (18:12 +0000)]
Small fixes:
1. wireshark.bat: Quote %U3_HOST_EXEC_PATH%\wireshark.exe so pathname
   with spaces will work;
2. makefile.nmake: Use $(MAKE) /$(MAKEFLAGS) so things like
   invoking nmake at the top level with /E to have environment
   variables override config.namke definitions will work.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23297 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix Windows build error if not using LUA; Bug #1950
wmeier [Sun, 28 Oct 2007 13:46:20 +0000 (13:46 +0000)]
Fix Windows build error if not using LUA; Bug #1950

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23296 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoU3 package update to:
gal [Sun, 28 Oct 2007 11:58:16 +0000 (11:58 +0000)]
U3 package update to:
a) include smi.dll if SMI_DIR is set
b) add a batch script to run the U3 wireshark configuration by simulating the U3 environment
c) include a test step in the build process to verify that the U3 package contains all the required files (tries to run "wireshark -D")
d) include the wireshark.bat in the U3 zip file.

This final step means that the U3 package can be unzipped on any drive and run using the wireshark.bat script. (Note this currently creates an unwanted cmd window.)

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23295 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agofrom Gisele Vanem:
jake [Sun, 28 Oct 2007 11:25:34 +0000 (11:25 +0000)]
from Gisele Vanem:
This needs file_util.h if HAVE_LIBNETTLE is defined.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23294 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Stefan Puiu:
etxrab [Sat, 27 Oct 2007 16:49:13 +0000 (16:49 +0000)]
From Stefan Puiu:
According to http://www.iana.org/assignments/bootp-dhcp-parameters, suboptions
from 1 to 10 have been defined. 3 is reserved, and most of the others have
their own RFC. For a start I've attached a patch that decodes suboption 6 just
as 1 and 2, and also suboption 3. This might not be entirely correct, since
suboptions 1 and 2 are opaque values (RFC3046), while 6 is an ASCII text
string.

I added something for the other values as well...

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23293 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Stephane Chazelas:
etxrab [Sat, 27 Oct 2007 15:53:29 +0000 (15:53 +0000)]
From Stephane Chazelas:
The description of the most significant bit of the "Device Revision" byte of
the response to a "Get Device ID" is the wrong way round. 1 means "device
provides Device SDRs" and not the contrary according to IPMI specs 1.5 and 2.0.

Also, I noticed in that file that "Chassis" is spelled "Chasis".

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23292 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Martin Peylo:
etxrab [Sat, 27 Oct 2007 15:48:47 +0000 (15:48 +0000)]
From Martin Peylo:
Enhancement:
- TIPC is available in a new version (1.7), adding/removing fields while
keeping the same version number (2).

Minor bugs:
- In NAME_DISTRIBUTOR messages the origianting and destination node are
switched.
- The used size of BUNDLER messages payload is not calculated correctly when
size%4=0, this leads to the wrong assumption that the message would be
malformed.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23291 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Mark C. Brown:
etxrab [Sat, 27 Oct 2007 15:44:12 +0000 (15:44 +0000)]
From Mark C. Brown:
Add support for the new NS_LS_SCTP tracing subsystem.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23290 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Steve Osselton:
etxrab [Sat, 27 Oct 2007 15:38:22 +0000 (15:38 +0000)]
From Steve Osselton:
The GIOP Fragment message type was added as of GIOP 1.1. However the Fragment
message header (containing a request id) was only added as of GIOP 1.2. The
GIOP Fragment dissector incorrectly attempts to process the request id for a
version 1.1 request.

To fix add a version check to the dissect_giop_fragment function in
packet-giop.c:

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23289 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Stefano Picerno:
etxrab [Sat, 27 Oct 2007 15:28:35 +0000 (15:28 +0000)]
From Stefano Picerno:
I made some updates to the edonkey dissector.
Most kademlia1 and some kademlia2 messages are now completely decoded.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23288 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Andrew Feren:
etxrab [Sat, 27 Oct 2007 15:02:07 +0000 (15:02 +0000)]
From Andrew Feren:
return FALSE if dissector_try_string(...) is passed a NULL string pointer
arguably this should assert instead.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23287 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Andrew Feren:
etxrab [Sat, 27 Oct 2007 14:57:46 +0000 (14:57 +0000)]
From Andrew Feren:
patch to test for NULL media_type_str_lower_case.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23286 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoApply yet another set of the optimization patches:
etxrab [Sat, 27 Oct 2007 14:44:29 +0000 (14:44 +0000)]
Apply yet another set of the optimization patches:
- Use a fast path for the most common use of tvb_get_xxx functions:
offset is >= 0 and tvb->real_data is set (this one is always true).
- match_strval() is a linear search, put the most common protocols
TCP/UDP/RDP first.
- fix gtk1 g_strlcat declaration Use g_strlcat

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23285 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix for bug 1935.
jake [Sat, 27 Oct 2007 09:24:31 +0000 (09:24 +0000)]
Fix for bug 1935.
RFC3315 says that the vendor-specific information option must encapsulate each
option in the format code/length/value.  The current dhcpv6 dissector does not
differentiate these fields, it just puts it all together as one option-data
field. Attached is a patch that addresses this issue.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23284 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoRemove empty #if / #endif block
sfisher [Sat, 27 Oct 2007 05:11:50 +0000 (05:11 +0000)]
Remove empty #if / #endif block

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23283 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoMinor indentation changes
morriss [Fri, 26 Oct 2007 22:17:45 +0000 (22:17 +0000)]
Minor indentation changes

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23282 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoStop including xmlstab.h
martinm [Fri, 26 Oct 2007 16:57:54 +0000 (16:57 +0000)]
Stop including xmlstab.h

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23281 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoRemove some unnecessary includes.
martinm [Fri, 26 Oct 2007 16:53:08 +0000 (16:53 +0000)]
Remove some unnecessary includes.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23280 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFor the Wireshark/TShark -> dumpcap signal pipe on Windows, use a named
gerald [Fri, 26 Oct 2007 16:32:28 +0000 (16:32 +0000)]
For the Wireshark/TShark -> dumpcap signal pipe on Windows, use a named
pipe instead of stdin.  Add an argument (currently the parent PID) back
to the "-Z" flag and use it to construct the pipe name.  This lets us
pass the parent's stdin handle to dumpcap, which lets us capture from
stdin on Windows.  Add a comment about checking for the parent process.

In capture_loop.c, remove the wait_forever argument from cap_pipe_select()
since it was always FALSE.  Set the timeout under Windows to 250 ms
instead of 250000 ms.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23279 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoShow the acronyms for LSSU types in the Info column rather than the long description...
morriss [Fri, 26 Oct 2007 16:19:18 +0000 (16:19 +0000)]
Show the acronyms for LSSU types in the Info column rather than the long description (and don't tell the user it's an LSSU, they already know that).  Also, there is no such thing as a SIBO, it's a SIB.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23278 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFrom Andrew Feren: Fix an assortment of typos and other minor errors
wmeier [Fri, 26 Oct 2007 15:26:04 +0000 (15:26 +0000)]
From Andrew Feren: Fix an assortment of typos and other minor errors

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23277 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd expert item for cases of unmatched function type or message op.
martinm [Fri, 26 Oct 2007 10:38:16 +0000 (10:38 +0000)]
Add expert item for cases of unmatched function type or message op.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23276 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoH.501 Mobility protocol implemented
kukosa [Fri, 26 Oct 2007 07:42:29 +0000 (07:42 +0000)]
H.501 Mobility protocol implemented

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23275 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agofix wrong headers in H.460.x ASN.1 sources
kukosa [Fri, 26 Oct 2007 07:18:44 +0000 (07:18 +0000)]
fix wrong headers in H.460.x ASN.1 sources

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23274 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoApply yet another set of the optimization patches:
etxrab [Fri, 26 Oct 2007 05:42:12 +0000 (05:42 +0000)]
Apply yet another set of the optimization patches:
Replace strncpy with g_strlcpy.
Add g_strlcat for GTK1 and don't use g_snprintf in GTK1 g_strlcpy
printf family is very slow.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23273 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoFix a typo.
gerald [Thu, 25 Oct 2007 20:37:12 +0000 (20:37 +0000)]
Fix a typo.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23272 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agodo not update call_state if new call_state == VOIP_NO_STATE
kukosa [Thu, 25 Oct 2007 12:24:01 +0000 (12:24 +0000)]
do not update call_state if new call_state == VOIP_NO_STATE

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23271 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agonew codec table for registering codecs by name
kukosa [Thu, 25 Oct 2007 09:38:15 +0000 (09:38 +0000)]
new codec table for registering codecs by name
new codec plugin type
search registered codecs in rtp player
fix memory leak in rtp player

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23270 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoRemove unused variable.
etxrab [Wed, 24 Oct 2007 21:52:44 +0000 (21:52 +0000)]
Remove unused variable.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23269 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoUse the media_type_dissector_table for the content type.
etxrab [Wed, 24 Oct 2007 21:47:13 +0000 (21:47 +0000)]
Use the media_type_dissector_table for the content type.
Add a few media types.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23268 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd an item for the recent packet-gdsdb.c fixes.
gerald [Wed, 24 Oct 2007 16:43:45 +0000 (16:43 +0000)]
Add an item for the recent packet-gdsdb.c fixes.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23267 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoRemove a couple of unused variables.
gerald [Wed, 24 Oct 2007 16:32:51 +0000 (16:32 +0000)]
Remove a couple of unused variables.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23266 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd port ranges.
etxrab [Wed, 24 Oct 2007 15:04:01 +0000 (15:04 +0000)]
Add port ranges.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23265 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoAdd missing case.
martinm [Wed, 24 Oct 2007 09:21:13 +0000 (09:21 +0000)]
Add missing case.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23264 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agofix voip_calls.c:126: warning: missing initializer
kukosa [Wed, 24 Oct 2007 09:10:43 +0000 (09:10 +0000)]
fix voip_calls.c:126: warning: missing initializer

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23263 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoadd common VoIP TAP listener "voip" which can be used in arbitrary experimental/propr...
kukosa [Wed, 24 Oct 2007 08:30:46 +0000 (08:30 +0000)]
add common VoIP TAP listener "voip" which can be used in arbitrary experimental/proprietary protocol (implemented e.g. in plugin) and allows it to make graphs and replay streams

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23262 f5534014-38df-0310-8fa8-9805f1628bb7

16 years agoSquelch warnings about uninitialized structure members.
guy [Wed, 24 Oct 2007 07:14:34 +0000 (07:14 +0000)]
Squelch warnings about uninitialized structure members.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@23261 f5534014-38df-0310-8fa8-9805f1628bb7