Site Tools


wireshark

Manipulate TS / PCAP in Wireshark

Extract RTP TS from PCAP

  • Move PCAP to TSA1
  • Open PCAP in wireshark
  • Click Analyse > Decode As
  • Add “UDP” as field
  • Add “RTP” as current
  • Use tool MPEG Dump, Tools → Dump MPEG TS Packets

Extract single TS from PCAP

  • As first section
  • Click Tools > Dump MPEG Statistics > UDP Multicast Streams
  • Enter name of output file which will land in C:\Program Files\Wireshark
  • Enter filter, for example ip.dst==239.201.125.24
  • 239.201.125.24
  • Use tool MPEG Dump, Tools → Dump MPEG TS Packets

Analyse single RTP TS from PCAP

  • As first section
  • Click Telephony > RTP > Stream Analysis
  • Sort by and the Select Destination Address
  • Press Analyse
  • Add “RTP” as current
wireshark.txt · Last modified: by ashley