Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] Statistics grouped by port?

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: Stephen Fisher <stephentfisher@xxxxxxxxx>
Date: Tue, 6 Feb 2007 11:26:12 -0800

On Tue, Feb 06, 2007 at 03:41:08PM -0500, Brad Johnson wrote:

> Hello everyone - longtime Ethereal/Wireshark user, first time poster.

Welcome to the list!

> Wireshark will group packets by "TCP endpoints", in other words 
> pairings of IP addresses and TCP destination ports. It will tell me 
> how many packets and bytes went IP address X on port Y. That's great 
> and all, but what I want to know is how many packets and bytes went to 
> port Y REGARDLESS of the IP. So basically a list like:

Is a spreadsheet workable?  The TCP endpoints screen has a "Copy" button 
that copies the data to the clipboard in comma separated (CSV) format.  
You could then filter out the ports you don't want an sum() the byte 
columns left.


Steve

  • Follow-Ups:
    • Re: [Wireshark-users] Statistics grouped by port?
      • From: Brad Johnson
  • References:
    • [Wireshark-users] Statistics grouped by port?
      • From: Brad Johnson
  • Prev by Date: Re: [Wireshark-users] Modification request: csv export
  • Next by Date: Re: [Wireshark-users] Modification request: csv export
  • Previous by thread: [Wireshark-users] Statistics grouped by port?
  • Next by thread: Re: [Wireshark-users] Statistics grouped by port?
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation