Wireshark-dev: [Wireshark-dev] Need help about subprotocol

From: "Bingyao Du" <dubingyao@xxxxxxxxx>
Date: Sat, 27 Jan 2007 01:06:19 +0800
Hi all,

The protocol I'm dissecting has a "header" portion, that contains a "type field", and then a payload with different format for each type. The Header protion contains several fields.

I thinks it's better to display the packet with two dissectors, just looks like IP dissector and TCP dissector. What should I do? Or could you send me an example or demo? Thanks very much.
 
BTW, I'm troubled by the problem for several days. I have tried several way, but it doesn't work:(
 
-Bingyao