Hello,
Last month I submitted a dissector for the DRDA/DB2 protocol.
Here is a small patch of a dozen lines that extracts SQL statements from
the packet.
This allows to use the field "drda.sqlstatement" in coloring rules or in a
packet filter so that only SQL statements are dumped from a connection, like :
tshark -Tfields -e drda.sqlstatement
(BTW this new "-Tfields" controlled output of tshark is very useful).
Please check-in this patch.
Thanks.
metatech
Attachment:
packet-drda-diff.tgz
Description: application/compressed