Differences between revisions 15 and 16
Revision 15 as of 2008-04-12 17:51:30
Size: 1954
Editor: localhost
Comment: converted to 1.6 markup
Revision 16 as of 2011-07-19 02:38:30
Size: 1944
Editor: WenchaoWang
Comment:
Deletions are marked like this. Additions are marked like this.
Line 3: Line 3:

The [[UDP]] layer provides datagram based connectionless transport layer (layer 4) functionality in the InternetProtocolFamily. 
The [[UDP]] layer provides datagram based connectionless transport layer (layer 4) functionality in the InternetProtocolFamily.
Line 16: Line 15:
Line 20: Line 18:
Line 24: Line 21:
Line 28: Line 24:

The UDP dissector is fully functional. 
The UDP dissector is fully functional.
Line 34: Line 29:
Line 38: Line 32:
Line 44: Line 37:
 Show only the UDP based traffic: {{{
 udp }}}
 . Show only the UDP based traffic:
{{{
 udp
}}}
Line 48: Line 43:

Capture only the UDP based traffic: {{{
 udp }}}
 . Capture only the UDP based traffic:
{{{
 udp
}}}
Line 53: Line 49:

User Datagram Protocol (UDP)

The UDP layer provides datagram based connectionless transport layer (layer 4) functionality in the InternetProtocolFamily.

UDP is only a thin layer and provides not much more than the described UDP port multiplexing.

Just like IP, UDP also doesn't provide any mechanism to detect PacketLoss, DuplicatePackets and alike.

There are a lot of protocols on top of UDP, including: BOOTP, DNS, NTP, SNMP, ...

UDP-Lite

Are you looking for Lightweight UDP? Then visit UDP-Lite.

History

XXX - add a brief description of UDP history

Protocol dependencies

  • IP: Typically, UDP uses IP as its underlying protocol. The assigned protocol number for UDP on IP is 17.

Example traffic

XXX - Add example traffic here (as plain text or Wireshark screenshot).

Wireshark

The UDP dissector is fully functional.

There are two statistical menu items for UDP available: Statistics/Endpoints which contains a tab showing all UDP endpoints (combination of IP address and UDP port) and Statistics/Conversations, which contains a tab showing all UDP conversations (combination of two endpoints).

Preference Settings

(XXX add links to preference settings affecting how UDP is dissected).

Example capture file

XXX - Add a simple example capture file. Keep it short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.

Display Filter

A complete list of UDP display filter fields can be found in the display filter reference

  • Show only the UDP based traffic:
     udp

Capture Filter

  • Capture only the UDP based traffic:
     udp

  • RFC768 User Datagram Protocol

Discussion

User_Datagram_Protocol (last edited 2011-07-24 15:08:04 by LorenKellogg)