-
**Wireshark software, currently available in Chinese, in order to facilitate the demonstration, use the Chinese version. Of course, the English version is the mainstream. Open the Wireshark software, run the software, and enter its interface.
The interface of the Wireshark software is well-laid out and streamlined. Next, select the packet capture interface of Wireshark. Double-click the interface list item to enter the settings page of the packet capture interface.
Select the network card that your computer is currently using. For example, now that a wireless network card is being used, there are numbers on the interface list that are jumping. Click Start to enter the interface of packet capture, and then start capturing packets.
This page displays the dynamics of packet capture and records the process of packet capture. After the packet capture is completed, click the button to stop capturing the packet, which is the red crossed-out one. Finally, select the Save button and choose a location to save it.
Saved files can be opened later with wireshark for historical analysis.
-
Method steps.
First of all, we open the main interface of the Wireshark software, select the network card on the main interface, and then click to enter the packet capture and analysis process. In this article, we select Ethernet to capture packets.
Next, we can see the real-time packets captured by wireshark. We interpret the individual fields of the packet.
Represents the packet designator.
Caught within how long it takes for the software to start.
**ip。Destination IP.
Agreement. Packet length.
Packet information.
Next, we can click on a piece of data after parsing to view the details of the packet.
During the packet capture process, we can click the icon to start or stop. to start or stop the packet capture.
Next, we will briefly introduce the filter at the filter, and how to write the filter expression for **ip and destination IP.
First, we fill in the EQ in the filter field. Indicates a packet that obtains both **IP and destination IP. (The explanation here is that eq is replaced with == the same effect).
Fill in == in the filter field. Indicates that the destination address is a packet.
In the filter field, fill in == or ==. Indicates that the destination address of the packet is OR or is obtained. (This method is an example of how to use OR.) It can be followed by different expressions before and after or. )
In the filter field, fill == and ==. Indicates the packet that obtains the destination address and the ** address. (This method example mainly illustrates the use of and).
Learning is gradual, you should at least learn junior high school mathematics first, and then learn high mathematics, generally high mathematics in the first chapter of the content is a summary and review of high school knowledge, I hope you can make up for junior high school knowledge!! I'm a math major, I feel that the major is very difficult, but if you are not a math major, you generally calculate more, such as derivatives, these must be learned, like calculus, they are all based on the opposite process of derivatives, that is to say, derivatives are very important, you must remember most of the common derivatives, so that calculus is easy. >>>More
What grade is it? As long as you go to the top and type "xx grade Olympiad questions and answers", there will be a lot of them, and you can't read them all.
Further MathematicsLinear algebra >>>More
10 15 5) (7 2) 20 5 4 (years old) The age of the son 10 years ago. >>>More
1, in fact, it should be calculated, the sum of these natural numbers is divided by 7 and then divided by 7, and the integer is divided by 7, the remainder can only be 1-6, in the question, the decimal point is 2, then this remainder should be 2, so if it is rounded, then it should be, otherwise it is. >>>More