decode_protocol

MCP tool from MCP Wireshark by khuynh22

Extract protocol fields as a TSV table. Curated defaults for HTTP, DNS, TLS, GOOSE, MMS, SV, SIP, ICMP; arbitrary fields for any other protocol

How to use it

Project documentation lists decode_protocol for the MCP Wireshark MCP server. Add the server to your MCP client (Claude Desktop, Cursor, Windsurf and others), then check which tools your installed version makes available. Tool availability can depend on configuration and credentials. A server handshake does not verify this tool’s behavior. See the full listing for setup details.

Install MCP Wireshark

$claude mcp add --transport stdio --scope user mcp-wireshark -- mcp-wireshark
FULL MCP WIRESHARK LISTING