Wireshark-dev: Re: [Wireshark-dev] PCap-NG support in Wireshark and Tshark

From: Guy Harris <guy@xxxxxxxxxxxx>
Date: Sun, 29 Dec 2013 14:45:33 -0800
On Dec 29, 2013, at 3:41 AM, Guy Harris <guy@xxxxxxxxxxxx> wrote:

> So it's more like "it might, or might not, be possible to read from a pipe here, depending on the file type and the contents of the file".

...and it is *not* possible to read from a pipe if you hand tshark the -2 flag, causing it to make two passes through the file.