Christopher Maynard <Christopher.Maynard@...> writes:
> So basically there are 3 steps:
>
> 1) Pick a user DLT, say 149 and enter it into the Wireshark user decode:
> Edit -> Preferences -> Protocols -> DLT_USER -> Encapsulations Table -> Edit
> -> New -> DLT: (Pick 1, i.e., User 2 (DLT=149)) -> Payload protocol: udp ->
> OK -> OK -> OK.
>
> 2) text2pcap -l 149 [other options] file.txt file.pcap
>
> 3) Open file.pcap in Wireshark.
>
> Hope that helps,
> - Chris
For more information, you can also refer to the user guide, section 10.20.
User DLTs protocol table
http://www.wireshark.org/docs/wsug_html_chunked/ChUserDLTsSection.html