Monday, April 1, 2024

Changing Packet Arrival Time in Wireshark

 


When I teach, present or use some reporting tools, I like to change the date for many reasons.

I searched around the net and quickly pulled into the python scapy rabbit hole, then I remembered Wireshark’s Time Shift feature. I wasn’t sure what the limits of it was and thought I would try it out.

I took a trace file from 2012 and wanted to change the time to 2022. I went online and converted 10 years to hours and got 87660. I then went to Edit->Time shift and entered 87660:00:00. Done, worked like a charm.



No comments:

Post a Comment

Popular post