Wireshark-bugs: [Wireshark-bugs] [Bug 9747] Timestamps not preserved in tshark output file
Date: Tue, 11 Feb 2014 19:21:43 +0000

changed bug 9747

What Removed Added
Attachment #12554 mime type application/vnd.tcpdump.pcap application/octet-stream

Comment # 4 on bug 9747 from
Comment on attachment 12554 [details]
flow 0 exported via tshark, timestamps missing

With a relatively recent top-of-trunk version, TShark wrote the file OK without
-2, but *crashed* with -2.

(BTW, for what it's worth, the TShark output is a pcap-ng file, not a pcap
file, but I suspect that'd happen even with "-F pcap".  Perhaps TShark etc.
should default to the file type of the input file, not pcap-ng - or pcap, as in
older versions - as Wireshark does.)


You are receiving this mail because:
  • You are watching all bug changes.