dragorn
2013-05-16 14:12:07 UTC
The list seems to be rejecting some posts, I just unsubbed/resubbed
myself in the hopes that it wakes up and lets me post this time; it
also bounced Mike Ryans post and he asked me to send it along.
----- Forwarded message from Mike Ryan <***@isecpartners.com> -----
Date: Mon, 29 Apr 2013 13:09:32 -0700
From: Mike Ryan <***@isecpartners.com>
To: ***@kismetwireless.net
Subject: request: DLT for Bluetooth Low Energy
[sent this as-is to tcpdump-***@lists.tcpdump.org]
I would like a DLT for Bluetooth Low Energy, which is described in the
following document (warning, large PDF):
https://www.bluetooth.org/docman/handlers/downloaddoc.ashx?doc_id=229737
The link layer specification begins on PDF page 2189. The packet format
and headers begin on page 2200.
Background: I am a security researcher and have implemented a BTLE
sniffer for project Ubertooth (http://ubertooth.sf.net). One of my tools
dumps captured packets to PCAP, currently using USER_DLT0. I have also
written a Wireshark protocol dissector for these PCAP files.
These pieces of software are intended for public release, so I would
like a DLT for interoperability.
More information about can be found at my personal site:
http://lacklustre.net/bluetooth/
http://lacklustre.net/bluetooth/wireshark.html
----- End forwarded message -----
--
myself in the hopes that it wakes up and lets me post this time; it
also bounced Mike Ryans post and he asked me to send it along.
----- Forwarded message from Mike Ryan <***@isecpartners.com> -----
Date: Mon, 29 Apr 2013 13:09:32 -0700
From: Mike Ryan <***@isecpartners.com>
To: ***@kismetwireless.net
Subject: request: DLT for Bluetooth Low Energy
[sent this as-is to tcpdump-***@lists.tcpdump.org]
I would like a DLT for Bluetooth Low Energy, which is described in the
following document (warning, large PDF):
https://www.bluetooth.org/docman/handlers/downloaddoc.ashx?doc_id=229737
The link layer specification begins on PDF page 2189. The packet format
and headers begin on page 2200.
Background: I am a security researcher and have implemented a BTLE
sniffer for project Ubertooth (http://ubertooth.sf.net). One of my tools
dumps captured packets to PCAP, currently using USER_DLT0. I have also
written a Wireshark protocol dissector for these PCAP files.
These pieces of software are intended for public release, so I would
like a DLT for interoperability.
More information about can be found at my personal site:
http://lacklustre.net/bluetooth/
http://lacklustre.net/bluetooth/wireshark.html
----- End forwarded message -----
--