Chapter 2. Capturing Packets

In the previous chapter, we learned what packet analyzers are used for. In this chapter we will learn more about the Wireshark GUI features, and see how it helps in capturing and analyzing packets effectively, by covering the following topics:

  • Capturing packets with Wireshark interface lists
  • Capturing packets with Wireshark start options
  • Capture options
  • Wireshark filter examples
  • Wireshark Packet List pane
  • Wireshark Packet Details pane
  • Wireshark features
  • The tcpdump and snoop examples

Guide to capturing packets

Start Wireshark by clicking on the Wireshark icon or type Wireshark in the command line. When Wireshark starts it launches the following screen and provides the following ways to capture packets:

The following table explains ...

Get Packet Analysis with Wireshark now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.