Are you sure it is the standard pcap format and not the new pcap-ng
format? Ostinato cannot handle the new pcap-ng format.
Check the first 4 bytes of the file. If it is 0xa1b2c3d4 or
0xd4c3b2a1, then it is the pcap format; if it is 0x0A0D0D0A then it is
the new pcap-ng format.
To convert pcap-ng to pcap format you can use editcap or the online
service at
http://pcapng.com/
Srivats
On Wed, Feb 20, 2013 at 2:24 PM, skanda <
aparna...@gmail.com> wrote:
>
> Hi
> * I'm also trying to replay wireshark dump, however, Open Stream is saying
> that it's not a valid pcap file. I'm able to open it with plain wireshark &
> tshark (-r option). Could you please help?
>
> * When would the feature of replaying the wireshark dump (without separating
> into individual streams) come up?
> To unsubscribe from this group and stop receiving emails from it, send an
> email to
ostinato+u...@googlegroups.com.
> For more options, visit
https://groups.google.com/groups/opt_out.
>
>
--
http://ostinato.org/
@ostinato