Wireshark-users: Re: [Wireshark-users] UNISTIM Protocol Decode
From: "Keith French" <keithfrench@xxxxxxxxxxxxx>
Date: Fri, 18 Apr 2008 22:02:45 +0100
Yes, that takes you to:-

http://www.voip-info.org/wiki-Nortel+Phones

It has a link to a document called "553-3001-213", but it is a broken link. I have tried searching Nortel's site for this document and also in Google, without success.

Keith French.


----- Original Message ----- From: "Jaap Keuter" <jaap.keuter@xxxxxxxxx>
To: "Community support list for Wireshark" <wireshark-users@xxxxxxxxxxxxx>
Sent: Friday, April 18, 2008 4:47 PM
Subject: Re: [Wireshark-users] UNISTIM Protocol Decode


Hi,

Thanks for filing that.
With regard to the protocol, did you follow the link from the Wireshark
Wiki page on UNISTIM?

Thanx,
Jaap

Thanks for this, I have raised it under bug 2475.

There has been talk about UNIStim in these mailing lists about a PDF from
Nortel which gives a good description of the UNIStim protocol. Can anyone
give me a URL for this, I have searched Nortel's web site & cannot find
it?

Keith French.
----- Original Message -----
From: "Jaap Keuter" <jaap.keuter@xxxxxxxxx>
To: "Community support list for Wireshark" <wireshark-users@xxxxxxxxxxxxx>
Sent: Friday, April 18, 2008 1:31 PM
Subject: Re: [Wireshark-users] UNISTIM Protocol Decode


Hi,

This note can be found in the source code:

/* Don't set this to 5000 until this dissector is made a heuristic one!
  It collides (at least) with tapa. */

This was added somewhere in between 0.99.7 and 1.0.0. I'm not aware of
further development being done at this point. Please raise it as a bug
report so it's not overlooked. It should (temporarily) get a preference
so
you can set it to 5000, or even better, create heuristics for it.

Thanx,
Jaap

There would appear to be no preference options for the UNISTIM protocol
within Wireshark V1.0.0. It does not seem to decode these packets above
UDP. It will however decode OK via the "Decode As" option.

I realise that the dissector for this protocol was only introduced a
version or two ago. So is this a bug (in which case I'll raise it on
bugzilla), or is the dissector still being
developed?


_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users



--------------------------------------------------------------------------------


No virus found in this incoming message.
Checked by AVG.
Version: 7.5.524 / Virus Database: 269.23.1/1384 - Release Date:
17/04/2008
15:47

_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users




_______________________________________________
Wireshark-users mailing list
Wireshark-users@xxxxxxxxxxxxx
http://www.wireshark.org/mailman/listinfo/wireshark-users



--------------------------------------------------------------------------------


No virus found in this incoming message.
Checked by AVG.
Version: 7.5.524 / Virus Database: 269.23.2/1386 - Release Date: 18/04/2008 17:24