Threat Level: green Handler on Duty: Brad Duncan

SANS ISC: InfoSec Handlers Diary Blog - SANS Internet Storm Center InfoSec Handlers Diary Blog

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Quicktip: TShark's Options -e and -T

Published: 2021-12-26
Last Updated: 2021-12-26 16:53:27 UTC
by Didier Stevens (Version: 1)
0 comment(s)

When you use TShark's option -e to display a field value, you need to include option -Tfields.

You don't actually have to memorize this, TShark will help you when you use option -e without option -T:

And by doing so, you learn about other output formats, like JSON:


Didier Stevens
Senior handler
Microsoft MVP

Keywords: tshark wireshark
0 comment(s)
Diary Archives