X11
XXX - add a brief X11 description here
History
XXX - add a brief description of X11 history
Protocol dependencies
TCP: Typically, X11 uses TCP as its transport protocol. The well known TCP ports for X11 are 6000-6063. You will usually see TCP port 6000 used.
Example traffic
XXX - Add example traffic here (as plain text or Wireshark screenshot).
Wireshark
The X11 dissector is (fully functional, partially functional, not existing, ... whatever the current state is). Also add info of additional Wireshark features where appropriate, like special statistics of this protocol.
Preference Settings
(XXX add links to preference settings affecting how X11 is dissected).
Example capture file
XXX - Add a simple example capture file to the SampleCaptures page and link from here. Keep it short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.
Display Filter
A complete list of X11 display filter fields can be found in the display filter reference
Show only the X11 based traffic:
x11
Capture Filter
You cannot directly filter X11 protocols while capturing. However, if you know the TCP port used (see above), you can filter on that one.
External links
- add link to X11 specification and where to find additional info on the web about X11
