Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
Throughout this
presentation the
snapshots are from
Ethereal, but apply
as well to Wireshark.
In your projects you
should use the latest
version, which is here:
http://www.wireshark.org/
Windows: Linux/Unix:
Wireshark – application for sniffing packets
WinPcap libpcap
packet capture library packet capture library
running in user space running in user space
Windows Operating System Linux/Unix operating system
WinPcap Network Packet Filter (NPF) Linux Socket Filter (LSF)
device driver or BSD Packet Filter (BPF)
running in kernel space running in kernel space
Network Card Drivers
Network Interface Card
For internal use
5 © Nokia Siemens Networks
View of Ethereal/Wireshark
Packet List
Packet Details
Packet Bytes
Time Order
Destination IP Information
Source IP Protocol
Captured Views
Range of Packets
All Packets
Naming is critical:
• Was it the client?
• Was it the Server?
Captured Views
Range of Packets
All Packets
Naming is critical:
• Was it the client?
• Was it the Server?