I wish to apply a display filter to a Wireshark capture that contains several ARP exchanges when no filter is applied.
I have tried three different filters (one at a time) as follows:
ip.proto == ARP
ip.proto == 0x0806
ip.proto == 2054
but in either case, when the filter is applied there are no packets shown.
What filter should I be applying ?
I am using Version 1.6.5 (SVN Rev 40429 from /trunk-1.6)