Wireshark is a free and open-source packet analyzer.
It is used for network troubleshooting, analysis, software and communications protocol development, and education.
Originally named Ethereal, the project was renamed Wireshark in May 2006 due to trademark issues.
Wireshark is very similar to tcpdump, but has a graphical front-end and integrated sorting and filtering options.
Wireshark is a data capturing program that "understands" the structure (encapsulation) of different networking protocols.
It can parse and display the fields, along with their meanings as specified by different networking protocols.
Wireshark uses pcap to capture packets, so it can only capture packets on the types of networks that pcap supports.
Wireshark can color packets based on rules that match particular fields in packets, to help the user identify the types of traffic at a glance.
A default set of rules is provided; users can change existing rules for coloring packets, add new rules, or remove rules.
Official Website :- https://www.wireshark.org/
Comments
Post a Comment