WiresharkIntegration » History » Version 2
laforge, 02/19/2016 10:49 PM
add screenshot
1 | 1 | laforge | = Wireshark integration = |
---|---|---|---|
2 | |||
3 | [http://www.wireshark.org/ wireshark] is a popular Open Source protocol analyzer. Among many |
||
4 | other protocols, it includes dissectors for the GSM Layer 2 (LAPDm) and 3 (04.08). |
||
5 | |||
6 | There also is a GSMTAP protocol dissector (not in wireshark mainline yet, available in our |
||
7 | git repository in {{{src/wireshark/gsmtap.patch}}}), which allows real-time capture and |
||
8 | decode of GSM protocol messages encapsulated in GSMTAP (which is in turn encapsulated |
||
9 | in UDP and IP). |
||
10 | |||
11 | So if you have a wireshark version with GSMTAP support, you can have realtime decode and |
||
12 | trace of GSM protocol messages. |
||
13 | |||
14 | The OsmocomBB [wiki:layer2] program sends GSMTAP packets to the localhost (127.0.0.1) address |
||
15 | of the loopback interface (lo). |
||
16 | 2 | laforge | |
17 | == Screenshot == |
||
18 | |||
19 | [[Image(gsmtap-wireshark.png, 66%)]] |