Wireshark-users: Re: [Wireshark-users] Capturing packets for given ip address
From: "Sangeetha B" <sangeetha_b@xxxxxxxxxxxxxxxx>
Date: Tue, 4 Dec 2007 18:46:44 +0530
Hi Tom, I understand what you are saying but I am not getting the packets of all the hosts in the local net. I have the requirement that I need to capture the packets coming and going through the particular IP Address. but I am unable to see the packets from that IP. Thanks, Sangeetha -----Original Message----- From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Tom Heyligen Sent: Tuesday, December 04, 2007 4:27 PM To: Community support list for Wireshark Subject: Re: [Wireshark-users] Capturing packets for given ip address Hi Sangeetha, The Wireshark capture dialog is showing the vendor and name of your Ethernet controller(s), together with the currently associated IP address(es). However, this IP address is *your* IP address. If you change your IP settings in your OS, you will notice your new address as well in the Wireshark capture dialog. But there is no impact from your IP address on Wireshark! If you want to restrict the captured/displayed packets to some host/address, you should apply a filter (provided that you can see the packets from this remote machine). Hope this answers your question... Best regards, Tom Heyligen Quality Software Engineer -----Original Message----- From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Sangeetha B Sent: dinsdag 4 december 2007 11:04 To: 'Community support list for Wireshark' Subject: Re: [Wireshark-users] Capturing packets for given ip address Hi, Thanks for your reply In capture options the interface is showing like Intel(R) PRO/1000 MT Network Connection and by default ip address as my machines ip address. 1) How can I make default ip address as some other ip in local network? (not my machine IP) 2) Is it possible to do with the interface what we are using in the network. Regards, Sangeetha. -----Original Message----- From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Tom Heyligen Sent: Tuesday, December 04, 2007 3:14 PM To: Community support list for Wireshark Subject: Re: [Wireshark-users] Capturing packets for given ip address Hi Sangeetha, If the packets you are interested in, are passing by your machine, capture in promiscuous mode and use a capture filter (host x.x.x.x) or display filter (ip.addr eq x.x.x.x). If you cannot see those packets from your machine, your machine is probably connected to a switched Ethernet network. For more information, please read the section on capturing packets at http://www.wireshark.org/faq.html#q7.1 Best regards, Tom Heyligen Quality Software Engineer ________________________________________ From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Sangeetha B Sent: dinsdag 4 december 2007 9:45 To: wireshark-users@xxxxxxxxxxxxx Subject: [Wireshark-users] Capturing packets for given ip address Hi, I am working with wireshark. By default it was finding my machine IP Address and capturing the packets flowing into and from my machine. My Requirement was to give some IP Address in my network. It has to capture the packets flowing through that IP Address. Please help me outtttttt. Regards, Sangeetha DISCLAIMER ========== This e-mail may contain privileged and confidential information which is the property of Persistent Systems Ltd. It is intended only for the use of the individual or entity to which it is addressed. If you are not the intended recipient, you are not authorized to read, retain, copy, print, distribute or use this message. If you have received this communication in error, please notify the sender and delete all copies of this message. Persistent Systems Ltd. does not accept any liability for virus infected mails. _______________________________________________ Wireshark-users mailing list Wireshark-users@xxxxxxxxxxxxx http://www.wireshark.org/mailman/listinfo/wireshark-users DISCLAIMER ========== This e-mail may contain privileged and confidential information which is the property of Persistent Systems Ltd. It is intended only for the use of the individual or entity to which it is addressed. If you are not the intended recipient, you are not authorized to read, retain, copy, print, distribute or use this message. If you have received this communication in error, please notify the sender and delete all copies of this message. Persistent Systems Ltd. does not accept any liability for virus infected mails. _______________________________________________ Wireshark-users mailing list Wireshark-users@xxxxxxxxxxxxx http://www.wireshark.org/mailman/listinfo/wireshark-users _______________________________________________ Wireshark-users mailing list Wireshark-users@xxxxxxxxxxxxx http://www.wireshark.org/mailman/listinfo/wireshark-users DISCLAIMER ========== This e-mail may contain privileged and confidential information which is the property of Persistent Systems Ltd. It is intended only for the use of the individual or entity to which it is addressed. If you are not the intended recipient, you are not authorized to read, retain, copy, print, distribute or use this message. If you have received this communication in error, please notify the sender and delete all copies of this message. Persistent Systems Ltd. does not accept any liability for virus infected mails.
- Follow-Ups:
- Re: [Wireshark-users] Capturing packets for given ip address
- From: Jack Jackson
- Re: [Wireshark-users] Capturing packets for given ip address
- References:
- Re: [Wireshark-users] Capturing packets for given ip address
- From: Tom Heyligen
- Re: [Wireshark-users] Capturing packets for given ip address
- Prev by Date: Re: [Wireshark-users] Capturing packets for given ip address
- Next by Date: Re: [Wireshark-users] Capturing packets for given ip address
- Previous by thread: Re: [Wireshark-users] Capturing packets for given ip address
- Next by thread: Re: [Wireshark-users] Capturing packets for given ip address
- Index(es):