How to capture traffic with Wireshark on a specific port?
Occasionally Avolve Support may ask for a Wireshark log.
In this case we are interested in the traffic that occurs on a specific port. Wireshark is a diagnostic tool that monitors network traffic using a driver that must be installed on the machine that will be running the tool.
Wireshark can be downloaded from the official website here:
http://www.wireshark.org/download.html
Once Wireshark has been downloaded and installed you can run it. Please note that ideally no other programs will be running during this time such as other web browsers, email, or applications that use the web because this could possibly create extra "noise" in the log.
Upon starting Wireshark (as of version 1.10.5) you will see a start window. In the "Capture" section you will want to choose the primary device that is used for the network connection, often this is the "Local Area Connection".
After choosing the device that will be monitored please click on "Capture Options". A window will pop up from here, near the middle of the window, you can enter a filter. Here is where you will enter the port that the support team or engineering team are interested in you monitoring. For example on the Brava Server, port 8080 is used for internal communication. Here if we wanted to monitor port 8080 we would be running Wireshark on the Brava Server and we would enter this Capture Filter: "tcp port 8080" (without quotes). After this has been entered into the Capture Filter field you can click the Start button.
Replicate the problem that you are experiencing (or follow any specific instructions given). After you have replicated the problem you can then press the red stop button (square) in the Wirehsark toolbar - this will keep Wireshark from adding any irrelevant information to the log.
Goto File > Save to save the log. Send the log to the support team for review.
We recommend .zipping the file up so that it does not get blocked from an email filter.
Contact support if you have any questions during this process.
Comments
0 comments
Please sign in to leave a comment.