ntar reads and writes pcap-ng files (it was the first implementation of the
pcap-ng format).
You can find a version of it at
http://www.winpcap.org/ntar/
It compiles on Windows and Linux, and it should compile ok on other
platforms as well.
The ZIP/tarball snapshots are a bit dated, I admit that I should update them
(the version on CVS contains some fixes and updates).
If you need any help with it, just let me know or contact me off-list.
Have a nice day
GV
----- Original Message -----
From: "Aaron Turner" <synfinatic@xxxxxxxxx>
To: "Developer support list for Wireshark" <wireshark-dev@xxxxxxxxxxxxx>
Sent: Tuesday, May 19, 2009 1:07 PM
Subject: Re: [Wireshark-dev] pcap-ng
On Tue, May 19, 2009 at 12:28 PM, Michael T�xen
<Michael.Tuexen@xxxxxxxxxxxxxxxxx> wrote:
On May 19, 2009, at 9:20 PM, Aaron Turner wrote:
On Tue, May 19, 2009 at 4:58 AM, Michael T�xen
<Michael.Tuexen@xxxxxxxxxxxxxxxxx> wrote:
Hi Faten,
the current svn version is able to
- Wireshark/tshark can read pcapng files.
- dumpcap can write pcapng files when using the -n command line
parameter.
If you use the dev builds you can use it right now...
Best regards
Michael
Is there a library available for r/w pcap-ng files ala libpcap?
I know only of the ones at
http://wiki.wireshark.org/Development/PcapNg
Yeah, I had seen the ntartest.c code before- sounds like wireshark is
using a different codebase though.
Let me try to rephrase my question: Anyone know if the wireshark
pcap-ng code base is going to be released/packaged or organized in
such a way that other projects might take advantage of it seamlessly?
--
Aaron Turner
http://synfin.net/
http://tcpreplay.synfin.net/ - Pcap editing and replay tools for Unix &
Windows
Those who would give up essential Liberty, to purchase a little temporary
Safety, deserve neither Liberty nor Safety.
-- Benjamin Franklin
___________________________________________________________________________
Sent via: Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives: http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe