<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<meta http-equiv="X-UA-Compatible" content="IE=edge">
<meta name="viewport" content="width=device-width, initial-scale=1.0">
<meta name="generator" content="Asciidoctor 2.0.17">
<title>wireshark(1)</title>
<link rel="stylesheet" href="./ws.css">
</head>
<body class="manpage">
<div id="header">
<h1>wireshark(1) Manual Page</h1>
<h2 id="_name">NAME</h2>
<div class="sectionbody">
<p>wireshark - Interactively dump and analyze network traffic</p>
</div>
</div>
<div id="content">
<div class="sect1">
<h2 id="_synopsis">SYNOPSIS</h2>
<div class="sectionbody">
<div class="paragraph">
<p><span class="nowrap"><strong>wireshark</strong></span>
<span class="nowrap">[ <strong>-i</strong> <capture interface>|- ]</span>
<span class="nowrap">[ <strong>-f</strong> <capture filter> ]</span>
<span class="nowrap">[ <strong>-Y</strong> <display filter> ]</span>
<span class="nowrap">[ <strong>-w</strong> <outfile> ]</span>
<span class="nowrap">[ <strong>options</strong> ]</span>
<span class="nowrap">[ <infile> ]</span></p>
</div>
</div>
</div>
<div class="sect1">
<h2 id="_description">DESCRIPTION</h2>
<div class="sectionbody">
<div class="paragraph">
<p><strong>Wireshark</strong> is a GUI network protocol analyzer. It lets you
interactively browse packet data from a live network or from a
previously saved capture file. <strong>Wireshark</strong>'s native capture file
formats are <strong>pcapng</strong> format and <strong>pcap</strong> format; it can read and write
both formats.. <strong>pcap</strong> format is also the format used by <strong>tcpdump</strong> and
various other tools; <strong>tcpdump</strong>, when using newer verions of the
<strong>libpcap</strong> library, can also read some pcapng files, and, on newer
versions of macOS, can read all pcapng files and can write them as well.</p>
</div>
<div class="paragraph">
<p><strong>Wireshark</strong> can also read / import the following file formats:</p>
</div>
<div class="ulist">
<ul>
<li>
<p>Oracle (previously Sun) <strong>snoop</strong> and <strong>atmsnoop</strong> captures</p>
</li>
<li>
<p>Finisar (previously Shomiti) <strong>Surveyor</strong> captures</p>
</li>
<li>
<p>Microsoft <strong>Network Monitor</strong> captures</p>
</li>
<li>
<p>Novell <strong>LANalyzer</strong> captures</p>
</li>
<li>
<p>AIX’s <strong>iptrace</strong> captures</p>
</li>
<li>
<p>Cinco Networks <strong>NetXRay</strong> captures</p>
</li>
<li>
<p>NETSCOUT (previously Network Associates/Network General) Windows-based
<strong>Sniffer</strong> captures</p>
</li>
<li>
<p>Network General/Network Associates DOS-based <strong>Sniffer</strong> captures
(compressed or uncompressed)</p>
</li>
<li>
<p>LiveAction (previously WildPackets/Savvius) <strong>*Peek</strong>/<strong>EtherHelp</strong>/<strong>PacketGrabber</strong> captures</p>
</li>
<li>
<p><strong>RADCOM</strong>'s WAN/LAN analyzer captures</p>
</li>
<li>
<p>Viavi (previously Network Instruments) <strong>Observer</strong> captures</p>
</li>
<li>
<p><strong>Lucent/Ascend</strong> router debug output</p>
</li>
<li>
<p>captures from HP-UX <strong>nettl</strong></p>
</li>
<li>
<p><strong>Toshiba’s</strong> ISDN routers dump output</p>
</li>
<li>
<p>the output from <strong>i4btrace</strong> from the ISDN4BSD project</p>
</li>
<li>
<p>traces from the <strong>EyeSDN</strong> USB S0</p>
</li>
<li>
<p>the <strong>IPLog</strong> format output from the Cisco Secure Intrusion Detection System</p>
</li>
<li>
<p><strong>pppd logs</strong> (pppdump format)</p>
</li>
<li>
<p>the output from VMS’s <strong>TCPIPtrace</strong>/<strong>TCPtrace</strong>/<strong>UCX$TRACE</strong> utilities</p>
</li>
<li>
<p>the text output from the <strong>DBS Etherwatch</strong> VMS utility</p>
</li>
<li>
<p>Visual Networks' <strong>Visual UpTime</strong> traffic capture</p>
</li>
<li>
<p>the output from <strong>CoSine</strong> L2 debug</p>
</li>
<li>
<p>the output from InfoVista (previously Accellent) <strong>5View</strong> LAN agents</p>
</li>
<li>
<p>Endace Measurement Systems' ERF format captures</p>
</li>
<li>
<p>Linux Bluez Bluetooth stack <strong>hcidump -w</strong> traces</p>
</li>
<li>
<p>Catapult DCT2000 .out files</p>
</li>
<li>
<p>Gammu generated text output from Nokia DCT3 phones in Netmonitor mode</p>
</li>
<li>
<p>IBM Series (OS/400) Comm traces (ASCII & UNICODE)</p>
</li>
<li>
<p>Juniper Netscreen snoop files</p>
</li>
<li>
<p>Symbian OS btsnoop files</p>
</li>
<li>
<p>TamoSoft CommView files</p>
</li>
<li>
<p>Tektronix K12xx 32bit .rf5 format files</p>
</li>
<li>
<p>Tektronix K12 text file format captures</p>
</li>
<li>
<p>Apple PacketLogger files</p>
</li>
<li>
<p>Captures from Aethra Telecommunications' PC108 software for their test
instruments</p>
</li>
<li>
<p>Citrix NetScaler Trace files</p>
</li>
<li>
<p>Android Logcat binary and text format logs</p>
</li>
<li>
<p>Colasoft Capsa and PacketBuilder captures</p>
</li>
<li>
<p>Micropross mplog files</p>
</li>
<li>
<p>Unigraf DPA-400 DisplayPort AUX channel monitor traces</p>
</li>
<li>
<p>802.15.4 traces from Daintree’s Sensor Network Analyzer</p>
</li>
<li>
<p>MPEG-2 Transport Streams as defined in ISO/IEC 13818-1</p>
</li>
<li>
<p>Log files from the <em>candump</em> utility</p>
</li>
<li>
<p>Logs from the BUSMASTER tool</p>
</li>
<li>
<p>Ixia IxVeriWave raw captures</p>
</li>
<li>
<p>Rabbit Labs CAM Inspector files</p>
</li>
<li>
<p><em>systemd</em> journal files</p>
</li>
<li>
<p>3GPP TS 32.423 trace files</p>
</li>
</ul>
</div>
<div class="paragraph">
<p>There is no need to tell <strong>Wireshark</strong> what type of
file you are reading; it will determine the file type by itself.
<strong>Wireshark</strong> is also capable of reading any of these file formats if they
are compressed using gzip. <strong>Wireshark</strong> recognizes this directly from
the file; the '.gz' extension is not required for this purpose.</p>
</div>
<div class="paragraph">
<p>Like other protocol analyzers, <strong>Wireshark</strong>'s main window shows 3 views
of a packet. It shows a summary line, briefly describing what the
packet is. A packet details display is shown, allowing you to drill
down to exact protocol or field that you interested in. Finally, a hex
dump shows you exactly what the packet looks like when it goes over the
wire.</p>
</div>
<div class="paragraph">
<p>In addition, <strong>Wireshark</strong> has some features that make it unique. It can
assemble all the packets in a TCP conversation and show you the ASCII
(or EBCDIC, or hex) data in that conversation. Display filters in
<strong>Wireshark</strong> are very powerful; more fields are filterable in <strong>Wireshark</strong>
than in other protocol analyzers, and the syntax you can use to create
your filters is richer. As <strong>Wireshark</strong> progresses, expect more and more
protocol fields to be allowed in display filters.</p>
</div>
<div class="paragraph">
<p>Packet capturing is performed with the pcap library. The capture filter
syntax follows the rules of the pcap library. This syntax is different
from the display filter syntax.</p>
</div>
<div class="paragraph">
<p>Compressed file support uses (and therefore requires) the zlib library.
If the zlib library is not present, <strong>Wireshark</strong> will compile, but will
be unable to read compressed files.</p>
</div>
<div class="paragraph">
<p>The pathname of a capture file to be read can be specified with the
<strong>-r</strong> option or can be specified as a command-line argument.</p>
</div>
</div>
</div>
<div class="sect1">
<h2 id="_options">OPTIONS</h2>
<div class="sectionbody">
<div class="paragraph">
<p>Most users will want to start <strong>Wireshark</strong> without opti
没有合适的资源?快使用搜索试试~ 我知道了~
Wireshark-网络抓包工具
共1149个文件
html:206个
png:166个
dll:87个
需积分: 6 0 下载量 126 浏览量
2022-11-15
15:14:50
上传
评论
收藏 50.5MB 7Z 举报
温馨提示
开发人员、运维人员、网络工程师必须工具。
资源推荐
资源详情
资源评论
收起资源包目录
Wireshark-网络抓包工具 (1149个子文件)
dictionary.3com 2KB
dictionary.3gpp 4KB
dictionary.3gpp2 15KB
dictionary.alcatel-lucent.aaa 3KB
dictionary.ericsson.ab 28KB
dictionary.acc 11KB
ACCESSBIND-PIB 76KB
ACCESSBIND-PIB-orig 51KB
ACCOUNTING-CONTROL-MIB 30KB
ACCOUNTING-FRAMEWORK-PIB 9KB
ACCOUNTING-FRAMEWORK-PIB-orig 9KB
dictionary.acme 10KB
dictionary.actelis 442B
ADSL-LINE-EXT-MIB 48KB
ADSL-LINE-MIB 167KB
ADSL-TC-MIB 4KB
ADSL2-LINE-MIB 201KB
ADSL2-LINE-TC-MIB 27KB
dictionary.aerohive 853B
AGENTX-MIB 17KB
AGGREGATE-MIB 17KB
dictionary.airespace 2KB
ALARM-MIB 38KB
dictionary.alcatel 4KB
dictionary.alteon 997B
dictionary.altiga 7KB
dictionary.wimax.alvarion 19KB
dictionary.alvarion 12KB
dictionary.apc 1KB
APM-MIB 84KB
APPC-MIB 195KB
APPLETALK-MIB 100KB
APPLICATION-MIB 117KB
APPN-DLUR-MIB 23KB
APPN-MIB 196KB
APPN-TRAP-MIB 20KB
APS-MIB 55KB
dictionary.aptilo 6KB
dictionary.aptis 8KB
dictionary.arbor 514B
ARC-MIB 14KB
dictionary.aruba 3KB
dictionary.cisco.asa 15KB
dictionary.ascend 59KB
dictionary.asn 3KB
ATM-ACCOUNTING-INFORMATION-MIB 15KB
ATM-MIB 102KB
ATM-TC-MIB 27KB
ATM2-MIB 117KB
dictionary.audiocodes 652B
AUTHORS-SHORT 90KB
dictionary.avaya 965B
dictionary.azaire 2KB
dictionary.bay 12KB
dictionary.cisco.bbsm 417B
BGP4-MIB 43KB
dictionary.bintec 2KB
BLDG-HVAC-MIB 22KB
dictionary.bluecoat 760B
BRIDGE-MIB 50KB
dictionary.bristol 508B
dictionary.broadsoft 18KB
dictionary.brocade 711B
dictionary.bskyb 679B
dictionary.bt 421B
dictionary.cablelabs 11KB
dictionary.cabletron 899B
dictionary.camiant 609B
CAPWAP-BASE-MIB 92KB
CAPWAP-DOT11-MIB 13KB
cfilters 597B
CHARACTER-MIB 20KB
dictionary.chillispot 1KB
CIRCUIT-IF-MIB 13KB
dictionary.cisco 9KB
dictionary.citrix 659B
dictionary.clavister 476B
CLNS-MIB 36KB
dictionary.cnergee 2KB
COFFEE-POT-MIB 4KB
colorfilters 3KB
colorfilters 2KB
colorfilters 2KB
dictionary.colubris 329B
dictionary.columbia_university 666B
dictionary.compat 2KB
dictionary.compatible 614B
dictionary.nokia.conflict 1KB
COPS-CLIENT-MIB 31KB
COPS-PR-SPPI 13KB
COPS-PR-SPPI-TC 4KB
dictionary.cosine 753B
ws.css 40KB
ws.css 40KB
dictionary.dante 464B
tpncp.dat 649KB
DECNET-PHIV-MIB 92KB
dictionary.dellemc 460B
dfilters 670B
dictionary.dhcp 18KB
共 1149 条
- 1
- 2
- 3
- 4
- 5
- 6
- 12
资源评论
小竹吟風
- 粉丝: 99
- 资源: 2
上传资源 快速赚钱
- 我的内容管理 展开
- 我的资源 快来上传第一个资源
- 我的收益 登录查看自己的收益
- 我的积分 登录查看自己的积分
- 我的C币 登录后查看C币余额
- 我的收藏
- 我的下载
- 下载帮助
最新资源
- OpenEuler22.03TLS-SP3系统ssh漏洞官方升级包
- Jmeter实现同一线程组内接口并行执行
- MySQL的安装与配置PDF
- python007-django疫情数据可视化分析系统(LW+PPT).zip
- python006-django基于python技术的学生管理系统的设计与开发.zip
- python005-基于Python爬虫的网络小说数据分析系统的设计与实现.zip
- vs2015 udp 广播 demo
- 创维42L20HW(8DA6)软件数据.rar
- gcc15交叉编译工具链windows版,用于编译龙芯应用,gcc version 15.0.0 20241119 (experimental) (GCC)
- python004-基于python的抑郁症患者看护系统.zip
资源上传下载、课程学习等过程中有任何疑问或建议,欢迎提出宝贵意见哦~我们会及时处理!
点击此处反馈
安全验证
文档复制为VIP权益,开通VIP直接复制
信息提交成功