The protocol has changed in the last version of Yahoo Messenger. The service verification and the login are done on the port 199.
XXX - add a brief YMSG description here
XXX - add a brief description of YMSG history
- TCP: Typically, YMSG uses TCP as its transport protocol. There is no well known TCP port for YMSG traffic but 5050 seems to be often used.
XXX - Add example traffic here (as plain text or Wireshark screenshot).
The YMSG dissector is (fully functional, partially functional, not existing, … whatever the current state is). Also add info of additional Wireshark features where appropriate, like special statistics of this protocol.
(XXX add links to preference settings affecting how YMSG is dissected).
XXX - Add a simple example capture file to the SampleCaptures page and link from here (see below). Keep this file short, it's also a good idea to gzip it to make it even smaller, as Wireshark can open gzipped files automatically.
A complete list of YMSG display filter fields can be found in the display filter reference
Show only the YMSG based traffic:
You cannot directly filter YMSG protocols while capturing. However, if you know the TCP port used (see above), you can filter on that one.
Capture only the YMSG traffic over the default port (5050):
tcp port 5050
Imported from https://wiki.wireshark.org/YMSG on 2020-08-11 23:27:50 UTC