
上QQ阅读APP看书,第一时间看更新
Configuring byte offset and payload matching filters
Byte offset and payload matching filters provide us with flexible tools for configuring self-defined filters (filters for fields that are not defined in the Wireshark dissector and filters for proprietary protocols). By understanding the protocols that we work with and understanding their packet structure, we can configure filters that will watch a specific string in the captured packets, and filter packets according to it. In this recipe, we will learn how to configure these types of filters, and we will also see some common and useful examples of the subject.