Wireshark-users: Re: [Wireshark-users] decoding tcap over IP

From: "Luis EG Ontanon" <luis.ontanon@xxxxxxxxx>
Date: Fri, 27 Jul 2007 13:26:37 +0200
this is not TCAP, not at least in an standard form. It is not BER encoded.


On 7/27/07, Sebek Ab. <sebeeek@xxxxxxxxx> wrote:
> Hello List,
>
> I am using a recent version of wireshark (0.99.4) and I am not able to
> decode some packets.
>
> I believe they are tcap over IP.  The "decode as" toolbox doesn't propose
> tcap (tcap is usually based on SCCP/MTP).
>
> Do you know how I can force the decoding? Because I see in preference that
> wireshark is able to decode TCAP.
>
> A sample network capture :
> http://abeillep.free.fr/tcap_over_ip.cap
>
> Thanks for your help,
> S.
>
> _______________________________________________
> Wireshark-users mailing list
> Wireshark-users@xxxxxxxxxxxxx
> http://www.wireshark.org/mailman/listinfo/wireshark-users
>
>


-- 
This information is top security. When you have read it, destroy yourself.
-- Marshall McLuhan