Hi everybody,
I am using wireshark 1.2.0 to decode and analyse X.400 traffic on
aeronautical message handling systems (AMHS). I am very happy for
wiresharks support of the X411, X420 and P7 protocols. However,
sometimes it decodes my captured TCP packets only up to the OSI
presentation layer (pres) and ends up with telling me that the dissector
is not available (see packet details below). The curiosity is -
sometimes it does and sometimes not - although all protocols are
enabled.
Any ideas would be appreciated.
Rainer
========================================================================
============================
PACKET DETAILS:
No. Time Source Destination Protocol
Info Bytes
1 0.000000 192.168.110.222 192.168.110.123 PRES
DATA TRANSFER (DT) SPDU 103
Frame 1 (103 bytes on wire, 103 bytes captured)
Ethernet II, Src: Dell_2c:67:92 (00:1c:23:2c:67:92), Dst:
Vmware_00:23:23 (00:50:56:00:23:23)
Internet Protocol, Src: 192.168.110.222 (192.168.110.222), Dst:
192.168.110.123 (192.168.110.123)
Transmission Control Protocol, Src Port: 1502 (1502), Dst Port: 3001
(3001), Seq: 1, Ack: 1, Len: 49
TPKT, Version: 3, Length: 49
ISO 8073 COTP Connection-Oriented Transport Protocol
ISO 8327-1 OSI Session Protocol
ISO 8327-1 OSI Session Protocol
ISO 8823 OSI Presentation Protocol
user-data: fully-encoded-data (1)
fully-encoded-data: 1 item
PDV-list
presentation-context-identifier: 5
presentation-data-values: single-ASN1-type (0)
dissector is not available
[Expert Info (Warn/Undecoded): Dissector is not
available]
[Message: Dissector is not available]
[Severity level: Warn]
[Group: Undecoded]
single-ASN1-type:
A11B020207D50201143112A110310EA10CA00A3008A10602...
========================================================================
============================