tshark -i any -Y sip is what I use
Sent from my mobile Device
From: Wireshark-users <wireshark-users-bounces@xxxxxxxxxxxxx> on behalf of Nicholas Saunders <saunders.nicholas@xxxxxxxxx>
Sent: Sunday, September 6, 2020 9:59:59 AM
To: wireshark-users@xxxxxxxxxxxxx <wireshark-users@xxxxxxxxxxxxx>
Subject: [Wireshark-users] SIP trace with tshark?
Caution! External email. Do not open attachments or click links, unless this email comes from a known sender and you know the content is safe.
How do I monitor port 5060 for SIP traffic? Something like:
sudo tshark -d udp.port==5060,http
obviously, not http.
thanks,
Nick
___________________________________________________________________________
Sent via: Wireshark-users mailing list <wireshark-users@xxxxxxxxxxxxx>
Archives:
https://eur01.safelinks.protection.outlook.com/?url="">
Unsubscribe:
https://eur01.safelinks.protection.outlook.com/?url="">
mailto:wireshark-users-request@xxxxxxxxxxxxx?subject=unsubscribe
Atos and Canopy The Open Cloud Company are trading names used by the Atos group. The following trading entities are registered in England and Wales: Atos IT Services UK Limited (registered number 01245534) and Canopy The Open Cloud Company Limited (registration
number 08011902). The registered office for each is at Second Floor, Mid City Place, 71 High Holborn, London, WC1V 6EA. The VAT No. for each is: GB232327983.
This e-mail and the documents attached are confidential and intended solely for the addressee, and may contain confidential or privileged information. If you receive this e-mail in error, you are not authorised to copy, disclose, use or retain it. Please notify
the sender immediately and delete this email from your systems. As emails may be intercepted, amended or lost, they are not secure. Atos therefore can accept no liability for any errors or their content. Although Atos endeavours to maintain a virus-free network,
we do not warrant that this transmission is virus-free and can accept no liability for any damages resulting from any virus transmitted. The risks are deemed to be accepted by everyone who communicates with Atos by email.