obnox/wireshark/wip.git
15 years agoTry for another 1.1.1 development release.
gerald [Tue, 7 Oct 2008 21:29:25 +0000 (21:29 +0000)]
Try for another 1.1.1 development release.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26374 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoIf we auto-discover http_proxy, export it so that wget can pick it up. Change
gerald [Tue, 7 Oct 2008 19:47:28 +0000 (19:47 +0000)]
If we auto-discover http_proxy, export it so that wget can pick it up. Change
the shebang to use /bin/bash since we use bash-isms in the script.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26373 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd a hidden preference to show the version in the welcome page.
stig [Tue, 7 Oct 2008 15:18:40 +0000 (15:18 +0000)]
Add a hidden preference to show the version in the welcome page.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26371 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix printing of version in welcome page.
stig [Tue, 7 Oct 2008 14:06:44 +0000 (14:06 +0000)]
Fix printing of version in welcome page.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26370 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix for bug 2944:
jake [Tue, 7 Oct 2008 07:29:32 +0000 (07:29 +0000)]
Fix for bug 2944:
Textual correction: Unnumbered Information format-> Unconfirmed Information format, among others.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26369 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix for bug 2638:
jake [Tue, 7 Oct 2008 06:52:15 +0000 (06:52 +0000)]
Fix for bug 2638:
Add support for XOT PVC setup dissection.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26368 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd *.idb & *.sbr to svn:ignore property
wmeier [Tue, 7 Oct 2008 01:17:56 +0000 (01:17 +0000)]
Add *.idb & *.sbr to svn:ignore property

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26367 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd a hidden preference to set the welcome screen title.
gerald [Mon, 6 Oct 2008 22:49:01 +0000 (22:49 +0000)]
Add a hidden preference to set the welcome screen title.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26366 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoPut a newline at the end of the file.
guy [Mon, 6 Oct 2008 21:47:39 +0000 (21:47 +0000)]
Put a newline at the end of the file.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26365 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoRemove experimental dissector.
etxrab [Mon, 6 Oct 2008 20:31:56 +0000 (20:31 +0000)]
Remove experimental dissector.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26363 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Sven Eckelmann:
etxrab [Mon, 6 Oct 2008 20:24:02 +0000 (20:24 +0000)]
From    Sven Eckelmann:
B.A.T.M.A.N. dissector consists of many source files

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26362 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Kari Tiirikainen:
etxrab [Mon, 6 Oct 2008 20:11:44 +0000 (20:11 +0000)]
From   Kari Tiirikainen:
Req/resp tracking and service response time stats for GTP-C

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26361 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAlso use conversation index in the generated dst_ref.
stig [Mon, 6 Oct 2008 15:24:20 +0000 (15:24 +0000)]
Also use conversation index in the generated dst_ref.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26357 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanup related to proto_register and/or proto_reg_handoff
wmeier [Sun, 5 Oct 2008 23:08:54 +0000 (23:08 +0000)]
Minor cleanup related to proto_register and/or proto_reg_handoff
ep_alloc + memset --> ep_alloc0 (teamspeak2)

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26356 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Alex Turbov:
jake [Sun, 5 Oct 2008 15:12:20 +0000 (15:12 +0000)]
From Alex Turbov:
Sniffing native ICQ client I've found that SNAC(0x13,09) may contains more than
one buddy to modify. Also in attached patch enhanced decoders for SNACs
0x18-0x1B of family 0x13.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26355 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Pascal Quantin:
jake [Sun, 5 Oct 2008 09:30:24 +0000 (09:30 +0000)]
From Pascal Quantin:
The attached patch fix several bugs in the decoding function to display the
Cell Channel Description (44.018 chapter 10.5.2.1b) and the Frequency List
(44.018 chapter 10.5.2.13) information elements content.
Without this patch the ARFCNs displayed are completely wrong.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26354 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agouse g_malloc/g_free instead of malloc/free
sahlberg [Sun, 5 Oct 2008 08:41:44 +0000 (08:41 +0000)]
use g_malloc/g_free instead of malloc/free

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26353 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Colin O'Flynn:
jake [Sun, 5 Oct 2008 08:11:35 +0000 (08:11 +0000)]
From Colin O'Flynn:
The idea is that there is now some hardware that can put 802.15.4 frames over
Ethernet. To do so, the 802.15.4 frames are wrapped in an Ethernet frame, with
the Ethertype set to a value indicating the payload is 802.15.4.

Since there is no official ETHTYPE designated by the IEEE, the number 0x809A
is used in this code. However a preference is added to the "IEEE 802.15.4" type
in the preference dialog allowing you to change this ethtype to something else.

The hardware for those interested is the Atmel Raven USB Stick.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26352 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agochange u_char to unsigned char to make the osx compiler happy
sahlberg [Sun, 5 Oct 2008 00:51:28 +0000 (00:51 +0000)]
change u_char to unsigned char to make the osx compiler happy

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26351 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agokerberos/gss enhancements
sahlberg [Sun, 5 Oct 2008 00:28:36 +0000 (00:28 +0000)]
kerberos/gss enhancements

add a parameter *datalen to decrypt_krb5_data() so that we can pass back
the length of the decrypted blob back to the caller.
This is useful for when there are "junk" at the end of the blob and thus
the decrypted data is not the same size as the encrypted blob.
GSS CFX is one such example.
(we should have done this earlier since it might have made some other
stuff easier to imlement...)

make the preference setting krb_decrypt a globally visible variable so
we can see its value and act on it from callers of krb decryption from
outside of packet-kerberos.c    i.e.   from GSS CFX

Make keytype == -1  a wildcard that when passed to decrypt_krb5_data()
will try any/all encryption keys.
This since GSS CFX does not provide the enctype in the GSS layer.
(The GSS CFX enctype is only negotiated during the AP-REQ/REP  so we
should later pick this value up and store it in a CFX session variable.
That is for a later enhancement.
)

Enhance the GSS decryption (that for hitorical reasons are implemented
in packet-spnego.c  and not packet-gssapi.c :-)  )
to also handle decryption of GSS CFX

This should make wireshark able to decrypt any/all GSSAPI  RFC4121
packets, if the keytab file is provided.

I have successfully decrypted LDAP using GSS CFX with AES encryption
with this.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26350 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd safety against possible endless loop.
jake [Sat, 4 Oct 2008 18:00:35 +0000 (18:00 +0000)]
Add safety against possible endless loop.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26349 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd support for dissecting the 802.1t System ID Extensions
sake [Fri, 3 Oct 2008 22:11:13 +0000 (22:11 +0000)]
Add support for dissecting the 802.1t System ID Extensions
within the Bridge Identifiers.

(Inspired by http://packetlife.net/blog/2008/sep/26/vlan-challenge/)

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26348 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Mattias Nissler (bug 2936):
stig [Fri, 3 Oct 2008 17:01:08 +0000 (17:01 +0000)]
From Mattias Nissler (bug 2936):
Fix some gpointer casts.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26347 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agodocument the new -K argument
sahlberg [Fri, 3 Oct 2008 15:59:00 +0000 (15:59 +0000)]
document the new -K argument

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26346 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoSeveral improvements:
stig [Fri, 3 Oct 2008 14:58:53 +0000 (14:58 +0000)]
Several improvements:
- Split SEQ/ACK analysis into SEQ analysis (pr msg) and ACK analysis
  (pr dest/ackinfo entry) to correctly handle multicast messages.
- Improved dump of timestamp (in units of 100ms).
- Show Address PDU with 0 dest entries as Ack-Ack PDU.
- Print correct number of missing sequence numbers in Ack.
- Indicate end of list entry in Ack.
- Message ID is unsigned.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26345 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoExport read_keytab_file(), which is used outside libwireshark.
guy [Fri, 3 Oct 2008 06:53:55 +0000 (06:53 +0000)]
Export read_keytab_file(), which is used outside libwireshark.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26344 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd a -K command line option to provide the name of the kerberos keytab
sahlberg [Fri, 3 Oct 2008 05:21:28 +0000 (05:21 +0000)]
add a -K command line option to provide the name of the kerberos keytab
file to use for decryption of Krb5 and GSS-KRB

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26343 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agosamr enhancements
sahlberg [Fri, 3 Oct 2008 03:14:48 +0000 (03:14 +0000)]
samr enhancements

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26342 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agothe security info bitmask is 4 bytes, not 2
sahlberg [Fri, 3 Oct 2008 02:48:52 +0000 (02:48 +0000)]
the security info bitmask is 4 bytes, not 2

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26341 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoSAMR updates
sahlberg [Fri, 3 Oct 2008 02:39:17 +0000 (02:39 +0000)]
SAMR updates

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26340 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdded option to decode as BER encoded ASN.1.
stig [Thu, 2 Oct 2008 15:47:06 +0000 (15:47 +0000)]
Added option to decode as BER encoded ASN.1.
Dump as data if no decoding.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26339 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoDecode content according to given content type.
stig [Thu, 2 Oct 2008 15:45:54 +0000 (15:45 +0000)]
Decode content according to given content type.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26338 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Frank Kingswood:
jake [Thu, 2 Oct 2008 06:53:28 +0000 (06:53 +0000)]
From Frank Kingswood:
LeCroy instruments use the VICP protocol to carry GPIB messages over Ethernet.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26337 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Sven Eckelmann:
etxrab [Thu, 2 Oct 2008 06:29:28 +0000 (06:29 +0000)]
From   Sven Eckelmann:
B.A.T.M.A.N. dissector doesn't dissect gateway clients correct and has problems with truncated packets
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2869

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26336 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agosamr updates
sahlberg [Thu, 2 Oct 2008 06:05:05 +0000 (06:05 +0000)]
samr updates

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26335 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agofix typo
sahlberg [Thu, 2 Oct 2008 04:56:22 +0000 (04:56 +0000)]
fix typo

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26334 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMake sure any data structures we allocate are properly initialized. Fixes
gerald [Thu, 2 Oct 2008 04:55:51 +0000 (04:55 +0000)]
Make sure any data structures we allocate are properly initialized. Fixes
bug 2922.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26333 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoenhancements to SAMR
sahlberg [Thu, 2 Oct 2008 04:45:56 +0000 (04:45 +0000)]
enhancements to SAMR

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26332 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Jelmer Vernooij via enhancement bug #2929:
sfisher [Thu, 2 Oct 2008 03:46:23 +0000 (03:46 +0000)]
From Jelmer Vernooij via enhancement bug #2929:

Tie the IRC dissector to port 57000 for dircproxy and
other IRC proxies.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26331 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoupdate to SAMR
sahlberg [Thu, 2 Oct 2008 00:07:54 +0000 (00:07 +0000)]
update to SAMR

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26330 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoUse LUA 5.1.4
etxrab [Wed, 1 Oct 2008 19:38:27 +0000 (19:38 +0000)]
Use LUA 5.1.4

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26329 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix:MPEG PES decode reports "Malformed Packet" when PES packet length is 0
etxrab [Wed, 1 Oct 2008 18:30:16 +0000 (18:30 +0000)]
Fix:MPEG PES decode reports "Malformed Packet" when PES packet length is 0
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2229

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26328 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix for: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2926 :
morriss [Wed, 1 Oct 2008 13:57:41 +0000 (13:57 +0000)]
Fix for: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2926 :
provide a default case (returning an error) to prevent wiretap from asserting
out because we didn't set the packet encapsulation.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26327 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd Logarithmic and Auto to the list of Y Axis scale.
stig [Wed, 1 Oct 2008 09:32:09 +0000 (09:32 +0000)]
Add Logarithmic and Auto to the list of Y Axis scale.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26326 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd 3 new OIDs to the x509af dissector
sahlberg [Wed, 1 Oct 2008 05:23:58 +0000 (05:23 +0000)]
add 3 new OIDs to the x509af dissector

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26325 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoCall out to GPEF EFSBLOB from the LSA dissector
sahlberg [Wed, 1 Oct 2008 05:01:59 +0000 (05:01 +0000)]
Call out to GPEF   EFSBLOB  from the LSA dissector

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26324 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd a new protocol GPEF. This implements the blobs in
sahlberg [Wed, 1 Oct 2008 05:00:44 +0000 (05:00 +0000)]
add a new protocol GPEF.   This implements the blobs in
Microsoft   Group Policy : Encrypted File System Extension
MS-GPEF

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26323 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd description of PolicyServerRole
sahlberg [Wed, 1 Oct 2008 01:42:10 +0000 (01:42 +0000)]
add description of PolicyServerRole

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26322 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd two more constants to the lsa_PolicyInfo enum
sahlberg [Wed, 1 Oct 2008 01:28:52 +0000 (01:28 +0000)]
add two more constants to the lsa_PolicyInfo enum

add a new constant to the lsa_DomainInfoEnum enum

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26321 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd the new autogenerated lsa dissector
sahlberg [Wed, 1 Oct 2008 00:48:27 +0000 (00:48 +0000)]
add the new autogenerated lsa dissector

this changes some call signatures requiring changes to the netlogon
dissector as well

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26320 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd more policy handle types for the new LSA dissector
sahlberg [Wed, 1 Oct 2008 00:47:05 +0000 (00:47 +0000)]
add more policy handle types for the new LSA dissector

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26319 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agomark LSA as a autogenerated (and thus warningprone) dissector
sahlberg [Wed, 1 Oct 2008 00:46:05 +0000 (00:46 +0000)]
mark LSA as a autogenerated (and thus warningprone) dissector

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26318 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoupdate the conformance file to workaround a pidl bug/limitation for top
sahlberg [Wed, 1 Oct 2008 00:28:15 +0000 (00:28 +0000)]
update the conformance file to workaround a pidl bug/limitation for top
level arrays

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26317 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoadd initial idl file and conformance file for LSA
sahlberg [Wed, 1 Oct 2008 00:14:17 +0000 (00:14 +0000)]
add initial idl file and conformance file for LSA

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26316 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd a cast to avoid a warning.
stig [Tue, 30 Sep 2008 22:01:04 +0000 (22:01 +0000)]
Add a cast to avoid a warning.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26315 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix for bug 2917:
jake [Tue, 30 Sep 2008 21:23:19 +0000 (21:23 +0000)]
Fix for bug 2917:
Modbus Application Protocol Specification V1.1b includes a function 43 (0x2b)
Encapsulated Interface Transport.  When Wireshark encounters this message it is
shown as a TCP message, not a Modbus message.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26314 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Wade Hennessey:
etxrab [Tue, 30 Sep 2008 21:13:37 +0000 (21:13 +0000)]
From Wade Hennessey:
Add support the KDP (Kontiki Delivery Protocol).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26313 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Ben Greear:
etxrab [Tue, 30 Sep 2008 21:00:12 +0000 (21:00 +0000)]
From   Ben Greear:
Add support for LANforge protocol.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26312 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix Bug 2860 Malformed Packet DCP ETSI error with UDP packet length 9 by
etxrab [Tue, 30 Sep 2008 18:15:09 +0000 (18:15 +0000)]
Fix Bug 2860 Malformed Packet DCP ETSI error with UDP packet length 9 by
not accepting packages shorter than 10 bytes in the heuristic(min header length).
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2860

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26311 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoget_iec104apdu_len(): make the offset variable a guin32 instead of a guint8 so
morriss [Tue, 30 Sep 2008 16:03:18 +0000 (16:03 +0000)]
get_iec104apdu_len(): make the offset variable a guin32 instead of a guint8 so
we can deal with TVB lengths greater than 255.  This fixes the infite loop
reported in:

https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2914o

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26310 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom jmmikkel@mit.edu (Bug 2895):
sake [Tue, 30 Sep 2008 15:45:20 +0000 (15:45 +0000)]
From jmmikkel@mit.edu (Bug 2895):

We might receive new packets while redissecting and don't want to
dissect those before the packet-list is fully rebuilt.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26309 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor proto_reg_handoff cleanup: use find_dissector when appropriate.
wmeier [Tue, 30 Sep 2008 14:49:44 +0000 (14:49 +0000)]
Minor proto_reg_handoff cleanup: use find_dissector when appropriate.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26308 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanup related to proto_register, proto_reg_handoff
wmeier [Tue, 30 Sep 2008 14:46:48 +0000 (14:46 +0000)]
Minor cleanup related to proto_register, proto_reg_handoff

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26307 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFix for bug 1447: Follow TCP Stream show only the first stream
sake [Tue, 30 Sep 2008 13:29:15 +0000 (13:29 +0000)]
Fix for bug 1447: Follow TCP Stream show only the first stream

Use the new "tcp.stream eq XXX" as a display filter for follow tcp stream.
This makes sure only the tcp stream which the selected packet belangs to
will be shown (in case tcp ports are reused in the tracefile).

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26306 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMake the index from the conversation-struct available as field
sake [Tue, 30 Sep 2008 12:24:27 +0000 (12:24 +0000)]
Make the index from the conversation-struct available as field
"tcp.stream", this will make it possible to sort packets by
tcp stream, filter tcp streams exactly, etc.

It is also the preparation for a fix for bug 1447

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26305 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Alex:
jake [Tue, 30 Sep 2008 07:06:32 +0000 (07:06 +0000)]
From Alex:
NFSV4 parsing of the GETATTR reply is broken. I'm not sure what is going on,
but I re-wrote the GETATTR parsing anyways and my version of the parsing does not
exibit the same problems.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26304 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoUpdate RFC numbers in some comments.
gerald [Tue, 30 Sep 2008 02:57:06 +0000 (02:57 +0000)]
Update RFC numbers in some comments.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26303 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoCheck in a modified version of Alexey Neyman's patch from bug 2777. This should
gerald [Tue, 30 Sep 2008 02:56:11 +0000 (02:56 +0000)]
Check in a modified version of Alexey Neyman's patch from bug 2777. This should
also fix bug 2899. Make sure we only print a minus sign once and fixup a
comment.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26302 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoWe always use start_offset, so don't wrap it in "#ifdef HAVE_KERBEROS".
gerald [Tue, 30 Sep 2008 02:55:42 +0000 (02:55 +0000)]
We always use start_offset, so don't wrap it in "#ifdef HAVE_KERBEROS".

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26301 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd a cast to try to fix compilation on Windows.
gerald [Tue, 30 Sep 2008 02:55:13 +0000 (02:55 +0000)]
Add a cast to try to fix compilation on Windows.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26300 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agodissect lookupnames3
sahlberg [Mon, 29 Sep 2008 22:10:40 +0000 (22:10 +0000)]
dissect lookupnames3

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26299 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Derek Morr:
jake [Mon, 29 Sep 2008 21:40:53 +0000 (21:40 +0000)]
From Derek Morr:
The DNS dissector conflates KEY (used for TSIG) and DNSKEY records. Also, the
DNSKEY dissector doesn't parse the REVOKED flag, defined in RFC 5011.

The attached patch splits KEY and DNSKEY parsing, and adds support for REVOKED.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26298 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Jelmer Vernooij:
jake [Mon, 29 Sep 2008 21:39:13 +0000 (21:39 +0000)]
From Jelmer Vernooij:
The attached patch adds support for dissecting GSSAPI authentication
data to the SOCKS dissector.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26297 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agothere exists clients (linux) that sends a SETCLIENTID specifying the
sahlberg [Mon, 29 Sep 2008 21:06:12 +0000 (21:06 +0000)]
there exists clients (linux) that sends a SETCLIENTID specifying the
callback address/port with only 2 octets (high/low port)  i.e. witout
specifying the ip address.

this caused wireshark to corrupt memory when trying to 0-terminate the
original string after the fourth '.'   which happened to be beyond the
end of the string.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26296 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agofrom metze
sahlberg [Mon, 29 Sep 2008 18:52:17 +0000 (18:52 +0000)]
from metze

fallback to spnego_krb5_wrap for RFC4121 krb5 blobs

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26295 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agofrom Metze
sahlberg [Mon, 29 Sep 2008 18:44:10 +0000 (18:44 +0000)]
from Metze

add dissection of RFC4121 krb5 blobs

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26294 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agofrom metze
sahlberg [Mon, 29 Sep 2008 18:38:45 +0000 (18:38 +0000)]
from metze

add support for decryption of gssapi auth type 16

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26293 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoWindows Vista: Fix so 'touch --reference ...' file mod time is always gt Makefile...
wmeier [Mon, 29 Sep 2008 17:05:46 +0000 (17:05 +0000)]
Windows Vista: Fix so 'touch --reference ...' file mod time is always gt Makefile.nmake time

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26292 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoGSM MAP: inconsistent spacing in Info column
etxrab [Mon, 29 Sep 2008 16:57:09 +0000 (16:57 +0000)]
GSM MAP: inconsistent spacing in Info column
Bug https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2912

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26291 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd Sequence Number for DTAP messages.
etxrab [Mon, 29 Sep 2008 16:53:28 +0000 (16:53 +0000)]
Add Sequence Number for DTAP messages.
Fixes bug https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2490

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26290 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Joan Ramio:
etxrab [Mon, 29 Sep 2008 16:49:14 +0000 (16:49 +0000)]
From  Joan Ramio:
New dissector IEC 60870-5-104.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26289 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Jelmer Vernooij:
etxrab [Mon, 29 Sep 2008 16:28:34 +0000 (16:28 +0000)]
From Jelmer Vernooij:
Support for AYIYA protocol.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26288 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Francesco Fusco:
etxrab [Mon, 29 Sep 2008 16:20:24 +0000 (16:20 +0000)]
From  Francesco Fusco:
Endace ERFII (extension header) support.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26287 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Reinhard(rspmn):
etxrab [Sat, 27 Sep 2008 14:16:55 +0000 (14:16 +0000)]
From Reinhard(rspmn):
Wrong display of USSD strings in the GSM 7-bit alphabet for non-ASCII data

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26286 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanup for proto_reg-handoff & etc
wmeier [Sat, 27 Sep 2008 14:02:23 +0000 (14:02 +0000)]
Minor cleanup for proto_reg-handoff & etc

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26285 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoSmall cleanup of proto_reg_handoff & etc
wmeier [Sat, 27 Sep 2008 13:38:59 +0000 (13:38 +0000)]
Small cleanup of proto_reg_handoff & etc
- 'once-only' not req'd in some cases
- use find_dissector as appropriate
- remove unneeded code

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26284 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoHandle pref change via pref callback instead of registering an init fcn
wmeier [Sat, 27 Sep 2008 01:08:19 +0000 (01:08 +0000)]
Handle pref change via pref callback instead of registering an init fcn

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26283 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAddt'l minor change relating to proto_reg_handoff
wmeier [Fri, 26 Sep 2008 22:34:41 +0000 (22:34 +0000)]
Addt'l minor change relating to proto_reg_handoff

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26282 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanup related to proto_register and proto_reg_handoff
wmeier [Fri, 26 Sep 2008 22:07:45 +0000 (22:07 +0000)]
Minor cleanup related to proto_register and proto_reg_handoff

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26281 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanup related to proto_register & proto_reg_handoff
wmeier [Fri, 26 Sep 2008 20:06:40 +0000 (20:06 +0000)]
Minor cleanup related to proto_register & proto_reg_handoff

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26280 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAddt'l minor cleanup
wmeier [Fri, 26 Sep 2008 17:12:15 +0000 (17:12 +0000)]
Addt'l minor cleanup

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26279 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoprefs callback not req'd
wmeier [Fri, 26 Sep 2008 17:06:44 +0000 (17:06 +0000)]
prefs callback not req'd

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26278 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoMinor cleanups related to proto_reg_handoff
wmeier [Fri, 26 Sep 2008 17:04:01 +0000 (17:04 +0000)]
Minor cleanups related to proto_reg_handoff

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26277 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoReformat somewhat for readability
wmeier [Fri, 26 Sep 2008 16:45:28 +0000 (16:45 +0000)]
Reformat somewhat for readability

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26276 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoChange emv -> evm, as noted in bug 2903.
stig [Fri, 26 Sep 2008 10:15:58 +0000 (10:15 +0000)]
Change emv -> evm, as noted in bug 2903.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26275 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoFrom Sagar Pai:
jake [Thu, 25 Sep 2008 22:06:58 +0000 (22:06 +0000)]
From Sagar Pai:
This is a dissector for ZRTP, the Zfone projects secure media protocol, developed by Phil Zimmermann.
It is updated to the latest IETF draft draft-zimmermann-avt-zrtp-08.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26274 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoYet another GTK+ update...
etxrab [Thu, 25 Sep 2008 20:32:00 +0000 (20:32 +0000)]
Yet another GTK+ update...
Overview of Changes from GTK+ 2.14.2 to 2.14.3
==============================================

* Revert problematic GtkAdjustment changes

* Bugs fixed:
 552837 mem leak in gtkimmulticontext
 553000 incorrect i18n header in gtkfilesystem.c
 553135 eog crash: assertion failed
 552545 leaks GpImage

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26273 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoAdd the missing part of the fix for "Failure to dissect long SASL wrapped LDAP response".
etxrab [Thu, 25 Sep 2008 19:21:44 +0000 (19:21 +0000)]
Add the missing part of the fix for "Failure to dissect long SASL wrapped LDAP response".
https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2687

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26272 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoUpdate to the latest asn1 files and try to get rid of unused code warnings.
etxrab [Thu, 25 Sep 2008 19:20:14 +0000 (19:20 +0000)]
Update to the latest asn1 files and try to get rid of unused code warnings.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26271 f5534014-38df-0310-8fa8-9805f1628bb7

15 years agoUpdate to the latest asn1 files and try to get rid of unused code warnings.
etxrab [Thu, 25 Sep 2008 19:19:39 +0000 (19:19 +0000)]
Update to the latest asn1 files and try to get rid of unused code warnings.

git-svn-id: http://anonsvn.wireshark.org/wireshark/trunk@26270 f5534014-38df-0310-8fa8-9805f1628bb7