![]() Select DLT_USER under Protocols and Edit the encapsulations table:ĮventLog-Microsoft-Windows-Sysmon-Operational Trace Running To do that you have to open Preferences tab under the Edit panel. We issued a pull request to have a dedicated DLT value it is still pending. This is because you have not yet a true value from libpcap for our new Data Link.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |