Wireshark-dev: Re: [Wireshark-dev] HTTP header truncated

From: Sake Blok <sake@xxxxxxxxxx>
Date: Fri, 15 Apr 2011 22:20:26 +0200
On 14 apr 2011, at 22:46, Chris Maynard wrote:

> Alexander Koeppe <format_c@...> writes:
> 
>> If I click on the field, the complete data is being selected in the
>> bytes view. But in the detail view (where I clicked on) the word
>> [truncated] is prepended.
>> 
>> Question: Can I increase that "limit" over the GUI or ony withing the
>> source code?
>> I already had a look but didn't found the position where this truncation
>> is being performed.
>> 
>> So would be great if you guys could give me a short hint.
> 
> The limitation is imposed by ITEM_LABEL_LENGTH, currently defined in
> epan/proto.h as 240.  

(and now without premature sending)

A workaround without having to recompile Wireshark might be one of these options:

- Use follow TCP stream to get the full Authentication header
- Use rightclick -> copy -> value and then paste in a separate text file

Cheers,


Sake