Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-dev: Re: [Wireshark-dev] Affix bluetooth stack

From: Tyson Key <tyson.key@xxxxxxxxx>
Date: Mon, 31 Oct 2011 18:44:36 +0000
PS - I've just had a play with the "virtual HCI" implementation in the Linux kernel version shipped with *buntu 11.04, and it appears that the maintainers of their LibPCap builds have thoughtfully decided to disable support for capturing on Bluetooth interfaces, for some unknown reason. 

In this case, your best bet would be to install the "libbluetooth-dev" package, and build a non-crippled version of LibPCap (and Wireshark?) from source, with the appropriate "./configure" argument specified.

Sorry for disappointing you,

Tyson.

On 31 October 2011 18:21, Tyson Key <tyson.key@xxxxxxxxx> wrote:
Yes.

Please see the newly-updated wiki page regarding this (at http://wiki.wireshark.org/CaptureSetup/Bluetooth). It's been a long time since I've worked with Bluetooth, but I clearly remember it working under Fedora without any additional configuration, or effort on my part.

A "hcidump" utility from the developers of the Linux Bluetooth stack/BlueZ also exists, should you prefer to use it to generate (Wireshark-compatible) logs, instead - although it doesn't quite meet the criteria of "live capturing and display" (since you have to manually reload its generated log in Wireshark).

You could also try running "tshark -D | grep bluetooth*" (or "tshark -D | grep hci*") as root, or using "sudo" to see if your Bluetooth interface appears.

I hope that helps, 

Tyson. 


On 31 October 2011 18:13, vijay <vijay.prasanth@xxxxxxxxx> wrote:
Hi Tyson,

  I need to do a live capture on Bluetooth traffic does wireshark support capture with BLueZ stack in linux ?

Vijay


On Mon, Oct 31, 2011 at 3:10 AM, Tyson Key <tyson.key@xxxxxxxxx> wrote:
Hi Vijay,

There's no need to install Affix under KUbuntu (although installing other stuff from the repositories related to Bluetooth wouldn't hurt). Just enable Bluetooth connectivity as normal, and connect your adapter if necessary.

Tyson.

On 31 October 2011 08:03, vijay <vijay.prasanth@xxxxxxxxx> wrote:
Hi,

I not sure if this is the correct forum to post this but, Could some one tell me if it is possible to install affix bluetooth stack in kubuntu?
Currently BLueZ bluetooth stack is installed and wireshark requires Affix stack for live capture of bluetooth traffic.

The affix website says that it can be installed in a kernel with version 2.6.x or higher, and the version of the kernel I have installed is 3.0.X. Now can
I install the affix stack in my OS? or Affix doesnt support Kubuntu?

Thanks

___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
            mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe



--
                                          Fight Internet Censorship! http://www.eff.org
http://vmlemon.wordpress.com | Twitter/FriendFeed/Skype: vmlemon | 00447934365844

___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
            mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe


___________________________________________________________________________
Sent via:    Wireshark-dev mailing list <wireshark-dev@xxxxxxxxxxxxx>
Archives:    http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
            mailto:wireshark-dev-request@xxxxxxxxxxxxx?subject=unsubscribe



--
                                          Fight Internet Censorship! http://www.eff.org
http://vmlemon.wordpress.com | Twitter/FriendFeed/Skype: vmlemon | 00447934365844



--
                                          Fight Internet Censorship! http://www.eff.org
http://vmlemon.wordpress.com | Twitter/FriendFeed/Skype: vmlemon | 00447934365844