

Wireshark also ingests and analyzes traffic from various other protocol analyzers, making it. Open Wireshark Click on "Capture > Interfaces". If the user running it has root/admin privilege to put interfaces into monitor mode, Wirehark can show the traffic. At Port, enter the port number of the WAP.For example, enter 2002 if you used the default, or enter the port number if you used a port other than the default. Wireshark is a useful tool for anyone working with networks and can be used with most labs in the Cisco courses for data analysis and troubleshooting. I'm running WireShark on the latest version of Ubuntu and I can't seem to be able to capture traffic coming from other devices besides my own. Also, I notice that a lot of the packets seem to be encrypted because they have mostly characters that don't mean anything in them. In this step: Capture traffic that is not intended for your local machine.

On Wireshark 1.8, the capture filter box is present directly on the options screen, but on Wireshark 1.9, you set a capture filter by double-clicking on the interface. Go back to your Wireshark screen and press Ctrl + E to stop capturing. You need to specify the interface in the capture/options. Complete this lab as follows: From the Favorites bar, open Wireshark. Capture from different kinds of network hardware such as Ethernet or 802.11.
