
291 lines
7.9 KiB

<?xml version="1.0"?>
<!DOCTYPE article PUBLIC "-//OASIS//DTD DocBook XML V4.2//EN"
"http://www.oasis-open.org/docbook/xml/4.2/docbookx.dtd" [
<!-- $Id$ -->
-Use this section to encode all document information
Wireshark Info
<!ENTITY WiresharkCurrentVersion "1.7.1">
<title>Wireshark &WiresharkCurrentVersion; Release Notes</title>
<section id="WhatIs"><title>What is Wireshark?</title>
Wireshark is the world's most popular network protocol analyzer. It
is used for troubleshooting, analysis, development and education.
<section id="WhatsNew"><title>What's New</title>
<section id="BugFixes"><title>Bug Fixes</title>
The following bugs have been fixed:
<section id="NewFeatures"><title>New and Updated Features</title>
The following features are new (or have been significantly updated)
since version 1.6:
Wireshark supports capturing from multiple interfaces at once.
You can now add, edit, and save packet annototations.
Wireshark, TShark, and their associated utilities now save files
using the pcap-ng file format by default. (Your copy of Wireshark
might still use the pcap file format if pcap-ng is disabled in
your preferences.)
Decryption key management for IEEE 802.11, IPsec, and ISAKMP
is easier.
OID resolution is now supported on 64-bit Windows.
When saving packets, the default choice is now to save
only the displayed packets rather than all packets.
TCP fast retransmissions are now indicated as an expert info note,
rather than a warning, just as TCP retransmissions are.
TCP window updates are no longer colorized as "Bad TCP".
TShark's command-line options have changed. The previously
undocumented -P option is now -2 option for performing a two-pass
analysis; the former -S option is now the -P option for printing
packets even if writing to a file, and the -S option is now used to
specify a different line separator between packets.
GeoIP IPv6 databases are now supported.
<section id="NewProtocols"><title>New Protocol Support</title>
<!-- Sorted, one per line -->
<section id="UpdatedProtocols"><title>Updated Protocol Support</title> <para>
<section id="NewCapture"><title>New and Updated Capture File Support</title>
<!-- Sorted, one per line -->
<section id="GettingWireshark"><title>Getting Wireshark</title>
Wireshark source code and installation packages are available from
<ulink url="http://www.wireshark.org/download.html">http://www.wireshark.org/download.html</ulink>.
<section id="VendorPackages"><title>Vendor-supplied Packages</title>
Most Linux and Unix vendors supply their own Wireshark packages.
You can usually install or upgrade Wireshark using the package management
system specific to that platform. A list of third-party packages
can be found on the
<ulink url="http://www.wireshark.org/download.html#thirdparty">download page</ulink>
on the Wireshark web site.
<!-- XXX needs to be written
<section id="RemovingWireshark"><title>Removing Wireshark</title>
<section id="FileLocations"><title>File Locations</title>
Wireshark and TShark look in several different locations for
preference files, plugins, SNMP MIBS, and RADIUS dictionaries.
These locations vary from platform to platform. You can use
About→Folders to find the default locations on your system.
<section id="KnownProblems"><title>Known Problems</title>
Wireshark might make your system disassociate from a wireless network
on OS X 10.4.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1315">Bug
Dumpcap might not quit if Wireshark or TShark crashes.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1419">Bug
The BER dissector might infinitely loop.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1516">Bug
Capture filters aren't applied when capturing from named pipes.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=1814">Bug
Filtering tshark captures with display filters (-R) no longer works.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=2234">Bug
The 64-bit Windows installer does not support Kerberos decryption.
(<ulink url="http://wiki.wireshark.org/Development/Win64">Win64
development page</ulink>)
Application crash when changing real-time option.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4035">Bug
Hex pane display issue after startup.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4056">Bug
Packet list rows are oversized.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4357">Bug
Summary pane selected frame highlighting not maintained.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=4445">Bug
Wireshark and TShark will display incorrect delta times in some cases.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5356">Bug
<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5356">bug
Character echo pauses in Capture Filter field in Capture Options.
(<ulink url="http://bugs.wireshark.org/bugzilla/show_bug.cgi?id=5356">Bug
<section id="GettingHelp"><title>Getting Help</title>
Community support is available on
<ulink url="http://ask.wireshark.org/">Wireshark's Q&amp;A site</ulink>
and on the wireshark-users mailing list.
Subscription information and archives for all of Wireshark's mailing
lists can be found on <ulink url="http://www.wireshark.org/lists/">the
web site</ulink>.
Training is available from
<ulink url="http://www.wiresharktraining.com/">Wireshark University</ulink>.
<section id="FAQ"><title>Frequently Asked Questions</title>
A complete FAQ is available on the
<ulink url="http://www.wireshark.org/faq.html">Wireshark web site</ulink>.