Omi Lua Wireshark Dissectors

September 26, 2026 · View on GitHub

Wireshark

Omi Lua Wireshark dissectors provide easily customized and verified viewing of common binary exchange protocols.

Usage

To dissect packets, place lua script(s) in the wireshark plugins directory.

The standard user path on a windows install (please create the plugins directory):

%APPDATA%\Wireshark\plugins\

On a linux install use:

//usr/share/wireshark/plugins

For configuration information: Wireshark Plugin Configuration

Note: Some packets contain enough information to programmatically determine the correct protocol specification and/or version at runtime. Many do not. If you add multiple dissectors to your plugins folder, wireshark will dissect each "conversation" based on the first matching protocol. In these cases, please manually select protocol dissector using Analyze | Decode As….

For decoding information: Wireshark Protocol Decoding

Customization

Omi Lua dissectors are LLM friendly: you can point a large language model at a dissector and ask it to hide fields, rename columns, or adjust which parts of a protocol are shown, then reload the plugin to see the change immediately.

Lua

For more information on lua dissectors: How Lua fits into Wireshark

Development

Updates are greatly appreciated; however, this entire repository is source generated...including the words you are reading right now. If you wish to suggest script updates, the recommended process is to create an issue with changes and explanation. Time permitting, we will update the models and regenerate.

Protocol CountGenerated Lines
11447,975,523

For an explanation of how these dissectors are generated: Dissecting Exchange Protocols with Wireshark

Testing

Test

Please report any dissection errors as an issue. Include a small note on the protocol and version, and a minimal capture demonstrating the problem. Also consider including a link or pdf specification documenting the correct behavior.

Production packet captures are required for protocol verification. If your organization has the rights to packet captures, and you wish to make the world a better place, please post captures to this project.

List of data requests: Untested Protocols For the example captures: Omi Example Data

Support Wireshark

Wireshark is free and open source, maintained under the nonprofit Wireshark Foundation, which relies on donations to fund development, infrastructure, and education.

If these dissectors are useful to you, please consider supporting the foundation: Donate to the Wireshark Foundation

Open Markets Initiative

Omi The Open Markets Initiative (Omi) is a group of technologists dedicated to enhancing the stability of electronic financial markets using modern development methods.

Other generated code can be found at Omi Projects; for Omi rules and regulations, see Omi Directory.

Useful? A star helps others find OMI.

Organizations

24X · A2X · Aquis · Asx · B3 · Bist · Biva · BlueOceanAts · Box · BruceAts · Bse · Cboe · CixAts · Cme · Coinbase · Currenex · Eurex · Euronext · Finra · Hkex · Ice · Iex · Imperative · Jnx · Jpx · Jse · Koscom · Lseg · Ltse · Memx · Miax · Nasdaq · Nse · NsxAustralia · Nyse · Odx · OtcMarkets · Sgx · Siac · SmallX · Tmx · Txse

Exchanges and Ats

24XEquities · A2XEquities · AmexEquities · AmexOptions · AquisEquities · ArcaEquities · ArcaOptions · AsxDerivatives · AsxSecurities · B3Derivatives · BivaEquities · BlueEquities · BorsaIstanbul · BoxOptions · BruceEquities · BseIndia · BxeEquities · ByxEquities · BzxEquities · BzxOptions · C1Options · C2Options · CboeEquities · CboeEurope · CfeFutures · CoinbaseDerivatives · CurrenexForex · CxaEquities · CxeEquities · Deribit · DxeDerivatives · EdgaEquities · EdgxEquities · EdgxOptions · EmeraldOptions · FinraOrf · FinraOtc · FseEquities · GemxOptions · HkexDerivatives · HkexSecurities · IceFutures · IexEquities · IexOptions · IntelligentCross · IseOptions · JnxBonds · JnxEquities · LinkAts · LinkNqb · Lse · LtseEquities · MatchNow · MemxEquities · MemxOptions · MiaxOptions · MoonAts · MrxOptions · Mx · NationalEquities · NeoEquities · NfxFutures · NomOptions · NordicEquities · NseCd · NseCm · NseCom · NseEquities · NseFo · NsmEquities · NtxEquities · NtxOptions · NyseEquities · NyseOptions · OdxEquities · OdxSecurityToken · OnyxFutures · OseDerivatives · Overnight · PearlEquities · PearlOptions · PhlxOptions · PsxEquities · SapphireOptions · SmallFutures · Sse · SseEquities · Szse · TexasEquities · Trace · TradeEcho · TseEquities · Tsx · TsxAlpha · Turquoise · TxseEquities

Consolidators and Sips

Cqs · Cts · MdcsRealtime · NordicMarkets · NyseConsolidated · Opra · TitaniumConsolidated · Uqdf · Utdf · Utp

Platforms

CixAts CixAspen · Cme Globex · Jse Itac · Lseg Millennium · NsxAustralia Nets · Euronext Optiq · Eurex T7 · Sgx TitanDt

The Open Markets Initiative provides protocol definitions in several formats:

  • Kaitai Struct Definitions — cross language binary parsers with the kaitai struct compiler
  • DFDL Definitions — declarative DFDL schemas for cross language parsing
  • P4 Definitions — P4 programs for software and hardware data planes
  • Spicy Definitions — declarative Spicy grammars for the spicy toolchain and the zeek network security monitor
  • Lean Definitions — Lean 4 definitions with machine checked encode and decode proofs
  • TLA+ Definitions — TLA+ modules whose encode and decode are model checked with TLC
  • FIX Dictionaries — QuickFIX format xml data dictionaries, one per FIX version
  • Xml Specifications — the exchange protocol specification xmls, matching the original files

Disclaimer

Any similarities between existing people, places and/or protocols is purely incidental.

Enjoy.