The NetBIOS Session Service is part of the NetBIOS-over-TCP protocol suite, see the NetBIOS page for further information.
XXX - add a brief description of NBSS history
XXX - Add example traffic here (as plain text or Wireshark screenshot).
The NBSS dissector is fully functional.
(XXX add links to preference settings affecting how NBSS is dissected).
XXX - Add a simple example capture file to the SampleCaptures page and link from here. Keep it short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.
A complete list of NBSS display filter fields can be found in the display filter reference
Show only the NBSS based traffic:
You cannot directly filter NBSS while capturing. However, as it runs atop TCP port 139, you can filter on that one.
Capture NBSS traffic:
tcp port 139
RFC1001 Protocol Standard For a NetBIOS Service on a TCP/UDP Transport: Concepts and Methods
RFC1002 Protocol Standard For a NetBIOS Service on a TCP/UDP Transport: Detailed Specifications
Imported from https://wiki.wireshark.org/NetBIOS/NBSS on 2020-08-11 23:17:13 UTC