Wireshark 3.6 falanqeeyaha shabakadaha sii deynta

Sannad ka dib horumarinta, laan cusub oo xasilloon oo ka mid ah falanqaynta shabakadda Wireshark 3.6 ayaa la sii daayay. Aynu dib u xasuusanno in mashruuca markii hore lagu sameeyay magaca Ethereal, laakiin 2006, sababtoo ah iskahorimaadka milkiilaha Ethereal, horumariyayaashu waxay ku qasbanaadeen inay dib u magacaabaan mashruuca Wireshark. Xeerka mashruuca waxa lagu qaybiyaa shatiga GPLv2.

Hal-abuurka muhiimka ah ee Wireshark 3.6.0:

  • Isbeddel ayaa lagu sameeyay hab-raacyada xeerarka shaandhaynta taraafikada:
    • Taageero lagu daray ereyga "a ~= b" ama "a any_ne b" si loo doorto qiime kasta marka laga reebo hal.
    • Taageero lagu daray "a aan ku jirin b" syntax, taas oo la mid ah saameyn ahaan "ma a in b".
    • Waa loo oggol yahay in lagu qeexo xargaha isbarbardhigga xargaha cayriin ee Python, iyada oo aan loo baahnayn in laga baxsado xarfo gaar ah.
    • Erayga "a != b" had iyo jeer waa la mid sida tibaaxaha "!(a == b)" marka lagu isticmaalo qiyamka dhinacyada badan ("ip.addr != 1.1.1.1" hadda waa la mid sida tilmaamaya "ip.src!= 1.1.1.1. 1.1.1.1 iyo ip.dst!= XNUMX").
    • Qaybaha liisaska la dajiyay hadda waa in lagu kala saaraa kaliya hakad, kala xadaynta boosaska waa mamnuuc (ie. xeerka 'http.request.method in {"GET""HEAD"} waa in lagu badalaa 'http.request.method in {" Hel", "MADAXA"}'.
  • Taraafikada TCP, tcp.completeness filter ayaa lagu daray, kaas oo kuu ogolaanaya inaad kala soocdo durdurrada TCP ee ku salaysan xaaladda dhaqdhaqaaqa isku xirka, i.e. Waxaad garan kartaa socodka TCP ee baakadaha la isku dhaafsaday si loo dhiso, xogta lagu wareejiyo, ama loo joojiyo xidhiidhka.
  • Waxaa lagu daray goobta "add_default_value", kaas oo aad ku qeexi karto qiimaha caadiga ah ee goobaha Protobuf ee aan la taxan ama aan la boodin marka la qabanayo taraafikada.
  • Taageero lagu daray akhrinta faylalka leh taraafikada la xannibay ee qaabka ETW (Baafinta Dhacdada ee Windows). Qaybaha qaybinta ayaa sidoo kale lagu daray xirmooyinka DLT_ETW.
  • Habka "Raac qulqulka DCCP", oo kuu oggolaanaya inaad shaandhayso oo aad ka soo saarto waxa ku jira durdurrada DCCP.
  • Taageero lagu daray sifaynta baakadaha RTP oo wata xogta maqalka ee qaabka OPUS.
  • Waxaa suurtogal ah in baakadaha dhexda laga soo dejiyo qashinka qoraalka la geliyo qaabka libpcap iyadoo la dejinayo xeerar kala saarid oo ku salaysan tibaaxaha caadiga ah.
  • Ciyaartoyga qulqulka RTP (Telephony> RTP> RTP Player) si weyn ayaa dib loo habeeyey, kaas oo loo isticmaali karo in lagu ciyaaro wicitaanada VoIP. Taageero dheeri ah oo loogu talagalay liisaska-ciyaaraha, kordhinta jawaab-celinta is-dhexgalka, waxay siisay awoodda lagu aamusiyo codka oo beddelo kanaalada, waxay ku dartay ikhtiyaar lagu badbaadinayo dhawaaqyada la ciyaaray qaab faylal badan oo kanaal ah .au ama .wav.
  • Wadahadallada la xidhiidha VoIP ayaa dib loo habeeyey ( Wicitaannada VoIP, durdurrada RTP, Falanqaynta RTP, Ciyaartoyga RTP iyo socodka SIP), kuwaas oo aan hadda ahayn qaab habaysan oo gadaal laga furi karo.
  • Awoodda la socodka wicitaanada SIP ee ku salaysan qiimaha Call-ID ayaa lagu daray wada hadalka "Raac Raac". Faahfaahin dheeraad ah oo ku saabsan wax soo saarka YAML
  • Awoodda dib-u-ururinta jajabyada xirmooyinka IP-ga ee leh aqoonsiyada VLAN ee kala duwan ayaa la hirgeliyay.
  • Waxaa lagu daray gacan hayaha dib u dhiska USB (USB Link Layer) xirmooyinka la dhexgalay iyadoo la isticmaalayo qalabeeyayaasha.
  • Waxaa lagu daray "-export-tls-session- keys" ikhtiyaarka TShark si loo dhoofiyo furayaasha fadhiga TLS.
  • Wadahadalka dhoofinta ee qaabka CSV ayaa lagu beddelay falanqeeyaha qulqulka RTP
  • Sameynta xirmooyinka nidaamyada ku saleysan macOS ee ku qalabeysan chip Apple M1 ARM ayaa billaabay. Xirmooyinka aaladaha Apple ee leh chips-yada Intel waxay kordhiyeen shuruudaha nooca macOS (10.13+). Baakado 64-bit ah oo la qaadan karo oo lagu daray Windows (PortableApps). Waxaa lagu daray taageerada bilowga ah ee dhismaha Wireshark ee Windows iyadoo la adeegsanayo GCC iyo MinGW-w64.
  • Taageero lagu daray codaynta iyo qabashada xogta qaabka BLF (Informatik Binary Log File).
  • Taageerada borotokoolka ee lagu daray:
    • Hab-maamuuska isku xidhka Bluetooth-ka (BT LMP),
    • Buundada Protocol nooca 7 (BPv7),
    • Buundada Protocol nooca 7 Security (BPSec),
    • Saxiixa Shayga CBOR iyo Sireed (COSE),
    • E2 Codsiga Protocol (E2AP),
    • Dabagalka Dhacdada ee Daaqadaha (ETW),
    • Madaxa Eth ee aadka u daran (EXEH),
    • Raadiyaha Isku xidhka Waxqabadka Sare (HiPerConTracer),
    • ISO 10681,
    • Kerberos SPAKE
    • Tusaalaha Linux,
    • Iskuxidhka Isku xidhka Maxalliga ah (LIN),
    • Adeegga Jadwalka Hawsha Microsoft,
    • O-RAN E2AP,
    • O-RAN fronthaul UC-plane (O-RAN),
    • Opus Interactive Audio Codec (OPUS),
    • Habka Gaadiidka PDU, R09.x (R09),
    • RDP Dynamic Channel Protocol (DRDYNVC),
    • RDP Graphic pipeline channel Protocol (EGFX),
    • Gaadiidka badan ee RDP (RDPMT),
    • Daabacaada-waqtiga-dhabta ah-Is-isukumali Gaadiidka Virtual (RTPS-VT),
    • Daabacaada-waqtiga-dhabta ah-Is-isubi-ku-gubida borotokoolka siliga (la habeeyey) (RTPS-PROC),
    • Isgaadhsiinta Xusuusta La Wadaago (SMC),
    • Signal PDU, SparkplugB,
    • Nidaamka Isku-xidhka Gobolka (SSyncP),
    • Qaabka faylka sawirka lagu calaamadeeyay (TIFF),
    • TP-Link Smart Home Protocol,
    • UAVCAN DSDL
    • UAVCAN / CAN,
    • UDP Remote Desktop Protocol (RDPUDP),
    • Van Jacobson PPP cadaadis (VJC),
    • World of Warcraft World (WOW),
    • Xamuulka xIRI x2 (xIRI).

Source: opennet.ru

Add a comment