WiresharkIntegration » History » Version 3

« Previous - Version 3/11 (diff) - Next » - Current version
laforge, 02/19/2016 10:49 PM
add link to wireshark bugzilla requesting gsmtap merge

= Wireshark integration =

[ wireshark] is a popular Open Source protocol analyzer. Among many
other protocols, it includes dissectors for the GSM Layer 2 (LAPDm) and 3 (04.08).

There also is a GSMTAP protocol dissector (not in wireshark mainline yet submitted as [ wireshark bug 4508], available in our
git repository in {{{src/wireshark/gsmtap.patch}}}), which allows real-time capture and
decode of GSM protocol messages encapsulated in GSMTAP (which is in turn encapsulated
in UDP and IP).

So if you have a wireshark version with GSMTAP support, you can have realtime decode and
trace of GSM protocol messages.

The OsmocomBB [wiki:layer23] program sends GSMTAP packets to the localhost ( address
of the loopback interface (lo).


Image(gsmtap-wireshark.png, 66%)

Add picture from clipboard (Maximum size: 48.8 MB)