Wireshark-users: [Wireshark-users] capture filter of PPP LCP

Date: Mon, 24 Dec 2007 10:55:06 +0800
Hello everyone!
    I'd like to write a capture filter, to capture only PPP LCP packets, I
use ppp[0:2] = 0xc021, the first two bytes "0xc021" of PPP header means
Link Control Protocol(LCP), this capture filter should work, but it
captures nothing, why?
    Any suggestion is welcome.

Best Regards
cwflying



--------------------------------------------------------
ZTE Information Security Notice: The information contained in this mail is solely property of the sender's organization. This mail communication is confidential. Recipients named above are obligated to maintain secrecy and are not permitted to disclose the contents of this communication to others.
This email and any files transmitted with it are confidential and intended solely for the use of the individual or entity to whom they are addressed. If you have received this email in error please notify the originator of the message. Any views expressed in this message are those of the individual sender.
This message has been scanned for viruses and Spam by ZTE Anti-Spam system.