Quote of the day (qod)
The qod protocol allows a client to get a random quote from a server.
The protocol is as old as TCP and is part of the basic protocols.
- ["TCP"]: Qod uses ["TCP"] as its transport protocol. The TCP port for qod traffic is 17.
Do'h - Homer Simpson
No qod dissector exists; the protocol is raw text without any formatting or commands.
Example capture file
XXX - Add a simple example capture file to the SampleCaptures page and link from here (see below). Keep this file short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.
A complete list of qod display filter fields can be found in the [http://www.wireshark.org/docs/dfref/q/qod.html display filter reference]
Show only the qod based traffic:
You cannot directly filter qod traffic while capturing. However, if you know the ["TCP"] port used (see above), you can filter on that one.
Capture only the qod traffic over the default port (17):
tcp port 17
[http://www.ietf.org/rfc/rfc865.txt RFC 865] Quote of the Day Protocol - description of the qod protocol.