Re: [Wireshark-dev] Unit testing dissector code

2021-06-04 Thread João Valverde via Wireshark-dev
Hi Martin, This is promising. I think dissecting a TVB and walking the proto_tree to assert the result is probably the way to go about implementing a dissector test suite (instead of reading a pcap with tshark and grepping the output). But regarding your PoC having to give extern linkage to

Re: [Wireshark-dev] please close issue 12800

2021-06-04 Thread Pascal Quantin
Hi Eugene, 4 juin 2021 18:41:53 Eugène Adell : > Hello, > > anyone with sufficient rights please close : > > https://gitlab.com/wireshark/wireshark/-/issues/12800 Done. Best regards, Pascal. ___ Sent via:Wireshark-dev m

[Wireshark-dev] please close issue 12800

2021-06-04 Thread Eugène Adell
Hello, anyone with sufficient rights please close : https://gitlab.com/wireshark/wireshark/-/issues/12800 ___ Sent via:Wireshark-dev mailing list Archives:https://www.wireshark.org/lists/wireshark-dev Unsubscribe: ht

[Wireshark-dev] Fixing decoding of RDP traffic

2021-06-04 Thread Hardening
Hi, I'm trying to fix the decoding of RDP traffic. My scenario is a typical RDP connection TLS encrypted (well with ciphers lowered so that no PFS is negotiated). So here's the list of my botherings: * I'm setting the TLS key associated with port 3389 and the host, but with RDP, there's 2 n