Wireshark-users: Re: [Wireshark-users] wireshark keeps on decoding SIP over UDP on non-standard p

From: Jaap Keuter <jaap.keuter@xxxxxxxxx>
Date: Mon, 28 Nov 2022 21:23:04 +0100
Hi,

Have you looked at the table in Analyse | Decode As...  ?

Thanks,
Jaap

> On 28 Nov 2022, at 16:51, Ariel Burbaickij <ariel.burbaickij@xxxxxxxxx> wrote:
> 
> Hello all,
> we observe that wireshark correctly decodes SIP over non-standard UPD port, even where it is undesirable for our purposes in this case. All options that we are aware of that would control such behaviour like trying heuristic dissectors are on OFF.  So, how is it done (analyzing the text behind the UDP header?) and how can it be prevented ?
> 
> Kind Regards
> Ariel Burbaickij
> 
>