Community discussions

MikroTik App
 
User avatar
rfc1149
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 77
Joined: Fri May 15, 2020 4:26 am
Location: England

Packet filters for sniffer support?

Sun May 08, 2022 11:59 pm

The capture filters for sniffer seem limited, understandably so but frustrating nonetheless.
I'm trying to capture PPP LCP traffic which is a part of the PPP protocol.
LCP packets fall under the PPP session (0x8864) so a capture will include ALL PPPoE session traffic which is problematic.

This has been asked before but was never answered. Is there any way to refine captures to subtypes?
Workarounds include TZSP and Wireshark with filtering (ppp and lcp) but that still produces very large temporary files as a result so it's not suitable.
Neither is TZSP suitable for anything other than IDS.
If not, is there any prospect of introducing more powerful filtering by hex notation so that sniffer has some practicality for future use other than casual debugging?
The existing filters are already doing this so restricting users from doing the same seems strange.

Asked before: viewtopic.php?t=87235

Who is online

Users browsing this forum: Egate, erlinden, johnson73 and 66 guests