The display filter "tcp.data contains ff:ff:ff:ff" doesn't work, but "tcp contains ff:ff:ff:ff" does
This issue was migrated from bug 8084 in our old bug tracker.
Original bug information:
Reporter: Lunxian
Status: RESOLVED FIXED
Product: Wireshark
Component: Dissection engine (libwireshark)
OS: All
Platform: All
Version: 1.8.4
Attachments:
sample-packet.pcap: here is a sample to test