Wireshark

  • Riverbed Technology
  • WinPcap
the world's foremost network protocol analyzer
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] Capture Filter

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: Sake Blok <sake@xxxxxxxxxx>
Date: Mon, 3 Dec 2007 17:39:40 +0100

On Mon, Dec 03, 2007 at 10:05:39AM +0300, Asif wrote:
> Stephen Fisher wrote:
> > On Mon, Dec 03, 2007 at 09:33:19AM +0300, Asif wrote:
> >   
> >> I want help on how to create Capture Filter for a specific host.
> >
> > See:
> > http://www.wireshark.org/docs/wsug_html_chunked/ChCapCaptureFilterSection.html
> >
> Thanks Stephen...
> 
> I tested with the following command but no luck
> tcp port 8080 and host 192.168.2.11
> 
> requirement was to capture traffic through and fro for IP 192.168.2.11 
> on TCP port 8080

That's the correct filter, but your traffic might me VLAN-tagged. In which
case you might want to have a look at:

http://wiki.wireshark.org/CaptureSetup/VLAN#head-6bf591391ffef059629a9eede2b4a3d83fdb215d

On how to build capture filters on vlan tagged interfaces.

Hope this helps, Cheers,


Sake

  • Follow-Ups:
    • Re: [Wireshark-users] Capture Filter
      • From: Trevor Tolk
  • References:
    • [Wireshark-users] Capture Filter
      • From: Asif
    • Re: [Wireshark-users] Capture Filter
      • From: Stephen Fisher
    • Re: [Wireshark-users] Capture Filter
      • From: Asif
  • Prev by Date: [Wireshark-users] Licensing Terms for Wireshark
  • Next by Date: [Wireshark-users] translations
  • Previous by thread: Re: [Wireshark-users] Capture Filter
  • Next by thread: Re: [Wireshark-users] Capture Filter
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation