Wireshark-users: Re: [Wireshark-users] Need to extract same output in TShark as in WireShark

From: "sandeep nitta" <sandeep.nitta@xxxxxxxxx>
Date: Wed, 3 Dec 2008 20:12:51 +0530
when you click on follow TCP stream in the wireshark UI, it separates the traffic of your interest from the rest by filtering on src ip and dst ip and src port and dst port.

you could pass the same parameters to tshark from a file or from command line so that it filters out the required stream.

It works just fine.

Thanks,
Sandeep Nitta

On Wed, Dec 3, 2008 at 6:56 PM, Appusamy Dinesh <adinesh@xxxxxxxxxxxxxxxx> wrote:

Hi,

 

In WireShark there is an option called "Follow TCP Stream". The way to go to this option is select TCP/HTTP packets and right-click on it, Follow TCP Stream will be enabled. I wanted to know how this can be achieved thru TShark.

 

Can anyone help me on this?

 

Regards,

Dinesh Appusamy

 

============================================================================================================================


Disclaimer:

This message and the information contained herein is proprietary and confidential and subject to the Tech Mahindra policy statement, you may review the policy at http://www.techmahindra.com/Disclaimer.html externally and http://tim.techmahindra.com/Disclaimer.html internally within Tech Mahindra.

============================================================================================================================

_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
https://wireshark.org/mailman/listinfo/wireshark-users