Microsoft Spool Subsystem (SPOOLSS)
Wireshark dissector for the Microsoft Print System Remote Protocol.
XXX - add a brief description of SPOOLSS history
SMB: SPOOLSS can also be transported over SMB.
XXX - Add example traffic here (as plain text or Wireshark screenshot).
The SPOOLSS dissector is fully functional.
(XXX add links to preference settings affecting how SPOOLSS is dissected).
Example capture file
XXX - Add a simple example capture file to the SampleCaptures page and link from here. Keep it short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.
A complete list of SPOOLSS display filter fields can be found in the display filter reference
Show only the SPOOLSS based traffic:
You cannot directly filter SPOOLSS protocols while capturing.