Wireshark-users: Re: [Wireshark-users] wireshark keeps on decoding SIP over UDP on non-standard p

From: Ariel Burbaickij <ariel.burbaickij@xxxxxxxxx>
Date: Tue, 29 Nov 2022 15:08:05 +0100
Hello Jaap, all,
nothing there as well.

Kind Regards
Ariel Burbaickij

On Mon, Nov 28, 2022 at 9:23 PM Jaap Keuter <jaap.keuter@xxxxxxxxx> wrote:
Hi,

Have you looked at the table in Analyse | Decode As...  ?

Thanks,
Jaap

> On 28 Nov 2022, at 16:51, Ariel Burbaickij <ariel.burbaickij@xxxxxxxxx> wrote:
>
> Hello all,
> we observe that wireshark correctly decodes SIP over non-standard UPD port, even where it is undesirable for our purposes in this case. All options that we are aware of that would control such behaviour like trying heuristic dissectors are on OFF.  So, how is it done (analyzing the text behind the UDP header?) and how can it be prevented ?
>
> Kind Regards
> Ariel Burbaickij
>

___________________________________________________________________________
Sent via:    Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:    https://www.wireshark.org/lists/wireshark-users
Unsubscribe: https://www.wireshark.org/mailman/options/wireshark-users
             mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe