Re: [tcpdump-workers] RFC: Add multicast reception API to libpcap

2007-08-24 Thread Rick Jones
So this is meant to enable receipt of specific multicasts and not receipt of all multicasts right? Is that a particularly "pcappy" thing? Anyway, for HP-UX and Solaris, I suspect the receive all multicasts would be a DL_PROMISC_MULTI rather than the (i suspect) current DL_PROMISC_PHYS rick j

[tcpdump-workers] RFC: Add multicast reception API to libpcap

2007-08-24 Thread Bruce M Simpson
Hi all, I'd like to field a Request for Comments for a new pcap feature: receive link-layer multicast packets. I attach Pavlin's summary of XORP's requirements, and draw your attention to the varying methods used to enable this behaviour across operating systems. First of all some backgrou

[tcpdump-workers] Problems with pcap filter between Net::Pcap and tcpdump

2007-08-24 Thread Lee Hinman
Hi All, I'm trying to write a simple sniffer for AIM traffic, using "tcpdump -A -s0 tcp port 5190" works just great for capturing all the traffic, however, when I attemp to use the script I've written (below), it doesn't capture anything except for some extremely annoying UPnP packets (which aren'

[tcpdump-workers] I Need to register some DLTs

2007-08-24 Thread Luis EG Ontanon
Hi, I Need to register two DLTs they would be: DLT_MTP2_MULTISTANDARD that will have a one byte pseudo header of which the MS bit indicates the direction the next three bits are reserved and must be set to zero in writing the last nibble is used to indicate the standard used for mtp3 packets trans

Re: [tcpdump-workers] Having hard time creating my capture device

2007-08-24 Thread Guy Harris
Audet, Jean-Michel wrote: My problem is when I am starting the capture. My function close is called then the find device loop starts, all the device (including Ethernet, lo, ...) are re-open than close and is stuck in a loop. Than I got a message from Wireshark that the process just died. Wh

Re: [tcpdump-workers] Adding capture engine questions

2007-08-24 Thread Guy Harris
Saikiran Madugula wrote: I am a newbie too but I have following suggestions, although it always tough to suggest anything with out looking at source code. Did you make the following changes to handle your interface correctly ? pcap_lookup net, pcap_open_live and xxx_platform_finddevs. Have yo

Re: [tcpdump-workers] Adding capture engine questions

2007-08-24 Thread Saikiran Madugula
Audet, Jean-Michel wrote: Hi, I am currently adding a capture engine to sniff i2c traffic. I am currently adding this code into Linux using the pcap_linux mechanism (like Bluetooth and USB). My question is (and I am not currently sure if it's Wireshark or libpcap) why do

[tcpdump-workers] Adding capture engine questions

2007-08-24 Thread Audet, Jean-Michel
Hi, I am currently adding a capture engine to sniff i2c traffic. I am currently adding this code into Linux using the pcap_linux mechanism (like Bluetooth and USB). My question is (and I am not currently sure if it's Wireshark or libpcap) why do I get calls to my function xx

[tcpdump-workers] Please remove me from your email list.

2007-08-24 Thread christine . obcena
This is a request to have my name be removed from your email list. Thank you. [EMAIL PROTECTED] 08/24/2007 05:20 AM Please respond to tcpdump-workers@lists.tcpdump.org To tcpdump-workers@lists.tcpdump.org cc Subject [tcpdump-workers] Message Digest V1 #480 Message Digest Volume 1 : Is