Wireshark-users: Re: [Wireshark-users] Question on wireless sniffing and Cisco AP modes

From: Joerg Mayer <jmayer@xxxxxxxxx>
Date: Wed, 29 Apr 2009 18:32:22 +0200
On Wed, Apr 29, 2009 at 03:07:00AM -0700, Guy Harris wrote:
> On Apr 29, 2009, at 2:47 AM, Guy Harris wrote:
> 
> > ...that they've written a plug-in capture module
> > for Airopeek that opens a socket to and connects to the AP -
> > presumably "connecting" over UDP to port 5000, as indicated by the
> > dissector.
> 
> Or the AP sends packets *to* port 5000, and the capture module creates  
> a socket and binds it to port 5000.

That's what it actually does - send the packets to port 5000.

 ciao
     Joerg
-- 
Joerg Mayer                                           <jmayer@xxxxxxxxx>
We are stuck with technology when what we really want is just stuff that
works. Some say that should read Microsoft instead of technology.