Wireshark-bugs: [Wireshark-bugs] [Bug 10694] TSHARK doesn't capture the entire reassembled frame

Date: Thu, 13 Nov 2014 13:39:43 +0000

Comment # 6 on bug 10694 from
(In reply to Pascal Quantin from comment #5)
> I just checked and both are available in 1.10.X branch.

Thanxx for the information.We used this command and it gets decoded properly

“./tshark.exe -2 -r ./FILE.pcap -Y "gtp.teid==0xBEF00076" -w FILE_10_P1.pcap

but timestamp shown in colum was 0.00000000 for every frame.

We used -td option for getting the timestamp but still 0.0000000 is shown.


You are receiving this mail because:
  • You are watching all bug changes.