ble-sniffer_win_1.0.1_1111_Sniffer.exe fail

work_zcmm gravatar image

asked 2017-04-21 12:46:57 +0200

updated 2017-04-24 10:48:34 +0200

      i use ble-sniffer_win_1.0.1_1111_Sniffer.exe,but it note as follow:

image description image description

     and Why sometimes not get the connection of the data? Sometimes it stop 60 CONNECT_REQ or else

image description

image description still Loss data.pcapng Loss data 2.pcapng

edit retag flag offensive close delete report spam

1 answer

Sort by » oldest newest most voted
sigurdon gravatar image

answered 2017-04-21 14:32:34 +0200


From the log you posted it looks like your sniffer.cfg file is corrupted.

You can see that the file is located in the folder

C:\Users\dell\AppData\Roaming\Nordic Semiconductor\Sniffer\logs

Try to open the file and change the content to

comport = COM15

I also see that you are using Wireshark version 1.12.5, I recommend using version v1.10.x which is listed as the supported version in the nRF Sniffer User Guide v1.4

edit flag offensive delete publish link more


i change log.txt to [sniffer] comport = COM15 ,it can not work;the note is same as before.

zcmm ( 2017-04-24 10:01:20 +0200 )editconvert to answer

You need to change the file called sniffer.cfg, not the log.txt file

Sigurd ( 2017-04-24 10:02:31 +0200 )editconvert to answer

thank you very much.it is ok.Do you know the wireshark can not display packet data sometimes,but my phone can receive,is loss?

zcmm ( 2017-04-24 10:04:43 +0200 )editconvert to answer

Regarding the sniffer missing packets, see this post and comments.

Sigurd ( 2017-04-24 10:27:00 +0200 )editconvert to answer

my sniffer is still not recevice data,pls see "still loss data.pcapng"or"Loss data 2.pcapng",it can receive data when the phone disconnect device and wait 10 secs.

zcmm ( 2017-04-24 10:45:28 +0200 )editconvert to answer

I see that you are missing alot of packets in the "Loss data 2.pcapng", but the "still Loss data.pcapng" looks fine(sniffer captures all the packets) until the master disconnects after 7 seconds. Are you doing something different between these two sniffer traces was captured?

Sigurd ( 2017-04-24 11:38:11 +0200 )editconvert to answer

no,is is same operate.Same device and sniffer tools,it ofter stop by CONNECTT_REQ or "Loss data 2.pcapng"situation.

zcmm ( 2017-04-24 11:42:31 +0200 )editconvert to answer

Looks like the master is sending some L2CAP connection oriented channel packets. This is not supported by the regular SoftDevices. It also looks like there are 2 different master that tried to connect to the slave.

Sigurd ( 2017-04-24 16:35:20 +0200 )editconvert to answer

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer. Do not ask a new question or reply to an answer here.

[hide preview]

User menu

    or sign up

Recent questions

Question Tools

1 follower


Asked: 2017-04-21 12:46:57 +0200

Seen: 61 times

Last updated: Apr 24