Wireshark patch for MMS support

May 2nd, 2007 by Gavin Heer

We have created a patch for Wireshark that allows it to dissect MMS (Manufacturing Messaging Specification) PDUs when transported over COTP/TPKT. Previously, Wireshark only dissected the protocol when the OSI session and presentation layers were present. This patch adds COTP as a heuristic dissector for MMS. Be sure to enable ‘try heuristics sub-dissectors first’ in the TCP options as well as fragmentation assembly for TPKT and COTP.

USAGE:

The patch was submitted to Wireshark and was added to trunk (with some small changes made by the wireshark team). You can either download the latest development release from Wireshark(recommended) or download the latest stable release and apply the patch.

download mms_patch.txt

Posted in C++, C, Tools | Permalink | Trackback

One Response

  1. 人非章鱼 » 文章 » links for 2007-09-06

    […] Mu Security Research Labs » Blog Archive » Wireshark patch for MMS support (tags: MMS wireshark) 章鱼 在2007年09月7日,00:18.发表在网络美食类别中, […]

Leave a Comment

Please note: Comment moderation is enabled and may delay your comment. There is no need to resubmit your comment.