in reply to yet another pcap question
I don't know whether this will be applicable to your case, but I've just been analysing some pcap files, and I found the easiest method to be to use Wireshark to export the files as PDML (XML packet detail) and use an XML module to read these. This has the benefit of including all the packet analysis data that Wireshark generates, although PSML may be better if you don't need this.
--
"Any sufficiently analyzed magic is indistinguishable from science" - Agatha Heterodyne
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^2: yet another pcap question
by Anonymous Monk on Feb 09, 2010 at 15:46 UTC | |
by jethro (Monsignor) on Feb 09, 2010 at 22:35 UTC |