Wireshark mailing list archives
Re: Wireshark V1.8.0 - analysing dual NIC capture
From: Tamás Varga <Tamas.Varga () ericsson com>
Date: Wed, 27 Jun 2012 09:13:24 +0200
Hi Guy, is this also means that there is no way today to display or filter packets based on the interface they have been captured? /Tamas -----Original Message----- From: wireshark-users-bounces () wireshark org [mailto:wireshark-users-bounces () wireshark org] On Behalf Of Guy Harris Sent: Tuesday, June 26, 2012 23:26 To: Community support list for Wireshark Subject: Re: [Wireshark-users] Wireshark V1.8.0 - analysing dual NIC capture On Jun 26, 2012, at 1:56 PM, Jeff Morriss wrote:
Pretty much, yes. The intent (I think) was just to allow capturing on 2 interfaces simultaneously (rather than having to run 2 Wiresharks/dumpcaps and then merge the traces offline). But nothing was added to separate out potentially-duplicated traffic. (The use case is more for multi-homed hosts.)
Yes. Not all ways you can perform multi-interface capture are necessarily *useful*. Think of it as being similar to the "any" device on Linux (the differences are that 1) you can control options on individual interfaces separately; 2) the interfaces can supply different link-layer header types; 3) you have to specify the list of interfaces when you start the capture). ___________________________________________________________________________ Sent via: Wireshark-users mailing list <wireshark-users () wireshark org> Archives: http://www.wireshark.org/lists/wireshark-users Unsubscribe: https://wireshark.org/mailman/options/wireshark-users mailto:wireshark-users-request () wireshark org?subject=unsubscribe
Current thread:
- Wireshark V1.8.0 - analysing dual NIC capture Keith French (Jun 26)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Jeff Morriss (Jun 26)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Guy Harris (Jun 26)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Tamás Varga (Jun 27)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Guy Harris (Jun 27)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Tamás Varga (Jun 27)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Michael Tuexen (Jun 27)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Guy Harris (Jun 26)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Jeff Morriss (Jun 26)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Christopher Maynard (Jun 28)
- Re: Wireshark V1.8.0 - analysing dual NIC capture Tamás Varga (Jun 29)