Site Tools


wireshark

This is an old revision of the document!


Manipulate TS / PCAP in Wireshark

Extract RTP TS from PCAP

  • Move PCAP to TSA1
  • Open PCAP in wireshark
  • Click Analyse > Decode As
  • Add “UDP” as field
  • Add “RTP” as current

Extract single TS from PCAP

  • As first section
  • Click Tools > Dump MPEG Statistics > UDP Multicast Streams
  • Enter name of output file which will land in C:\Program Files\Wireshark
  • Enter filter, for example ip.dst==239.201.125.24
  • 239.201.125.24

Analyse single RTP TS from PCAP

  • As first section
  • Click Telephony > RTP > Stream Analysis
  • Sort by and the Select Destination Address
  • Press Analyse
  • Add “RTP” as current
wireshark.1734446758.txt.gz · Last modified: by ashley