Wireshark-users: Re: [Wireshark-users] Wild Card
From: "Hans Nilsson" <hasse_gg@xxxxxxxx>
Date: Thu, 22 Mar 2007 07:35:45 -1100
Try this:
ip[15,19]==28:28


On Wed, 21 Mar 2007 20:33:07 -0400, "Christopher Clayden"
<christopher.clayden@xxxxxxxxx> said:
> Hello Everyone,
> 
> 
> 
> Can anyone tell me what the wild card is in wireshark when used in IP
> addresses, if there is such?
> 
> 
> 
> For example, say you want to create a filter for all DC's in your
> organization and there addresses are as follows:
> 
> 
> 
> 192.168.1.40
> 
> 192.168.2.40
> 
> 192.168.3.40
> 
> 192.168.4.40
> 
> 192.168.5.40
> 
> 
> 
> I want to create a specific filter for the last octet, and in this
> example,
> it's 40.
> 
> 
> 
> Thank you for all your help in advance and I will be looking forward to
> your
> response.
> 
> 
> 
> Cheers,
> 
> 
> 
> Chris.
-- 
  Hans Nilsson
  hasse_gg@xxxxxxxx

-- 
http://www.fastmail.fm - Faster than the air-speed velocity of an
                          unladen european swallow