Skip to main content

Questions tagged [wireshark]

The network protocol analyzer developed and maintained by the Wireshark Foundation

0 votes
0 answers
139 views

Cannot see HTTP when using Wireshark on two different models of Alfa Wi-Fi adapters

I just upgraded my Wi-Fi adapter from Alfa AWUS036ACS to the Alfa AWUS036ACM and I can tell it's much better. However, I am still not getting the desired results in Wireshark which leads me to believe ...
Lin's user avatar
  • 25
1 vote
1 answer
775 views

How does 802.11a,b,g,n,ac and channel factor into sniffing with wireshark?

I have been playing around with wireshark lately and am wondering how your 802.11 version as well as channel impact packet capture? If my router uses 802.11a,g,n and ac and my wifi adapter uses 802....
Lin's user avatar
  • 25
0 votes
1 answer
92 views

Will this adapter work with wireshark?

Will the Alfa awus036acm with mt7612u chipset work with wireshark 6.0.2 on Kali 6.0.0 for packet sniffing tcp,udp,dns,http,etc? I have seen both negative and positive reviews on it so I'm not sure.
Lin's user avatar
  • 25
0 votes
0 answers
456 views

Why is Wireshark not showing any TCP, UDP, DNS or HTTP traffic?

I'm using Wireshark 4.0.2 on Kali 6.0.0 with an Alfa AWUS036ACS and in managed mode with promiscuous mode enabled I don't see any TCP, UDP, DNS or HTTP. If I switch to monitor mode with promiscuous ...
Lin's user avatar
  • 25
0 votes
1 answer
140 views

Forwarding tcpdump packets on remote gateway to wireshark

I'm trying to capture packets on a usb over ethernet interface (usb0) on a gateway. I have a ionoPi that is connected to the gateway (i.e. no gui on the pi and gateway) that sits between my ubuntu vm (...
Nemesis's user avatar
0 votes
1 answer
651 views

Wireshark showing Cloudflare WARP packets as DLEP instead of WireGuard or UDP

From what I've found so far, DLEP belongs to Cisco ? and Cloudflare WARP is supposed to use WireGuard I need help understanding why I'm seeing DLEP packets in WireShark instead of UDP or WireGuard. I'...
user avatar
3 votes
2 answers
9k views

How can I determine an IP camera’s streaming URL using Wireshark?

I have an unknown Chinese brand IP camera and I need to determine its streaming (most likely RTSP) URL. Accessing the camera's IP address through a browser loads a web page including the settings and ...
Mohamed Atef's user avatar
0 votes
0 answers
1k views

I get no HTTP or DNS traffic in wireshark

I am trying to analyze the traffic from a smartphone, through wireshark, but when I enter the HTTP or DNS filter, it shows nothing. The network I am analyzing is WPA2/PSK. I put the PSK key in ...
yellowdog's user avatar
  • 423
7 votes
1 answer
3k views

ICMP packet with TCP?

For some time now I have found myself interested in packet analyzing and I try to figure out all kinds of stuff that I see in network captures. I hope you guys might want to help me find out this one. ...
Deluccio's user avatar
0 votes
2 answers
68 views

Wireshark UI, how to have current packet stand out in packet list pane?

Default Wireshark UI seems to be very unfriendly in one aspect. When I'm scrolling and viewing a packet's detail, the UI gives very little visual clue about [which packet in the packet list I'm ...
Jimm Chen's user avatar
  • 6,034
0 votes
1 answer
180 views

Wrong Epoch time while sync with NTP server

I have two clients which are synchronized with the NTP server. I am trying to measure the latency of packet from client1 to client2. But the Epoch time still does not make sense because the packet ...
Nifty's user avatar
  • 3
0 votes
1 answer
5k views

How can I view the TLS 1.2 and 1.3 certificates in Wireshark?

I'm testing a new proxy and monitoring the connection using Wireshark, but I'm not seeing any certificate at all. my goal is to find out exactly what sensitive and identifiable data is leaving my ...
user avatar
0 votes
1 answer
1k views

How does a web server communicate HTTP/2 support to a client?

I built a nodeJS HTTP2 server on my localhost: 127.0.0.1:8443. Went to wireshark and selected the loopback adapter to capture the traffic when i hit the server from my chrome. I dont see the server ...
Rebooting's user avatar
  • 113
1 vote
1 answer
1k views

How to use ciscodump?

In wireshark, there is this option called Cisco remote capture: ciscodump, which, from my understanding, should enable to do a tcpdump on a cisco router (for example) via SSH and get back the results ...
user1741932's user avatar
0 votes
1 answer
41 views

Host seemingly isolated from other hosts on my network

I came across a weird issue an I need help to locate the problem or at least reduce the search area. I'll give a general insight but I can provide details on request. I have an HP laptop which runs ...
atianalisi's user avatar

15 30 50 per page
1
3 4
5
6 7
60