Wireshark-users: Re: [Wireshark-users] decoding SS7 messages encapsulated in some proprietary pro

From: Anders Broman <anders.broman@xxxxxxxxxxxx>
Date: Thu, 1 Apr 2010 16:39:55 +0200
Yes it should be possible to call the mtp2 or mtp3 dissector with a tvb containing the mtp2/mtp3 message.
Regards
Anders


From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Ariel Burbaickij
Sent: den 1 april 2010 16:23
To: Community support list for Wireshark
Subject: [Wireshark-users] decoding SS7 messages encapsulated in some proprietary protocol

Hello all,
following setup:
SS7 messages are transfered between vendor node in following fashion (level below TCP is omitted for clarity):


tcp(proprietary_protocol_with_some_additional_information(ss7 message)))

i.e. SS7 message is encapsulated in some propritetary protocol which adds some additional infromation which in turn is encapsulated
in TCP.

Now my question: Is/Are wireshark SS7 dissector(s) capable to parse SS7 packets once proprpietary_protocol is stripped/parsed away?


/wbr
Ariel Burbaickij