Wireshark-dev: Re: [Wireshark-dev] pcap-ng
From: "Gianluca Varenni" <gianluca.varenni@xxxxxxxxxxxx>
Date: Tue, 19 May 2009 14:59:57 -0700
ntar reads and writes pcap-ng files (it was the first implementation of the pcap-ng format).

You can find a version of it at

http://www.winpcap.org/ntar/

It compiles on Windows and Linux, and it should compile ok on other platforms as well. The ZIP/tarball snapshots are a bit dated, I admit that I should update them (the version on CVS contains some fixes and updates).

If you need any help with it, just let me know or contact me off-list.

Have a nice day
GV


----- Original Message ----- From: "Aaron Turner" <synfinatic@xxxxxxxxx>
To: "Developer support list for Wireshark" <wireshark-dev@xxxxxxxxxxxxx>
Sent: Tuesday, May 19, 2009 1:07 PM
Subject: Re: [Wireshark-dev] pcap-ng


On Tue, May 19, 2009 at 12:28 PM, Michael Tüxen
<Michael.Tuexen@xxxxxxxxxxxxxxxxx> wrote:
On May 19, 2009, at 9:20 PM, Aaron Turner wrote:

On Tue, May 19, 2009 at 4:58 AM, Michael Tüxen
<Michael.Tuexen@xxxxxxxxxxxxxxxxx> wrote:
Hi Faten,

the current svn version is able to
- Wireshark/tshark can read pcapng files.
- dumpcap can write pcapng files when using the -n command line
parameter.
If you use the dev builds you can use it right now...

Best regards
Michael

Is there a library available for r/w pcap-ng files ala libpcap?
I know only of the ones at
http://wiki.wireshark.org/Development/PcapNg

Yeah, I had seen the ntartest.c code before- sounds like wireshark is
using a different codebase though.

Let me try to rephrase my question: Anyone know if the wireshark
pcap-ng code base is going to be released/packaged or organized in
such a way that other projects might take advantage of it seamlessly?


--
Aaron Turner
http://synfin.net/
http://tcpreplay.synfin.net/ - Pcap editing and replay tools for Unix & Windows
Those who would give up essential Liberty, to purchase a little temporary
Safety, deserve neither Liberty nor Safety.
   -- Benjamin Franklin
___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe