How to do it...

To configure capture filters before starting with the capture, go through the following steps:

  1. To configure a capture filter, click on the Capture options button, fourth from the left, as shown in the following screenshot:
  2. The Wireshark - Capture Interfaces window will open, as you can see in the following screenshot:
  1. Mark the interface you want to capture, and in the Capture filter for selected interfaces fill in the filter expression you want to use (you can verify which interface is the active one, as described in Chapter 1, Introduction to Wireshark Version 2). As you see in the following screenshot, the filter expression that you wrote will appear in the interface line. In this example, tcp port http will capture all packets with TCP port 80:
  1. After configuring the filter, and making sure the filter box becomes green, indicating the filter string is a legal one, click on the Start button and the capture will start.

To configure a predefined filter, see the following steps:

  1. To configure a predefined capture filter, choose Capture Filters... from the Capture menu:

The following window will open:

  1. In this window you can add, delete, or copy.
..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.191.157.186