IP address: For instance you may want to track a unit by its IP address, the command for this would be "ip.addr = x.x.x.x" where x is the IP address of your laptop or of a unit that you want to monitor. Following the syntax for three useful cases. In the capture filter text field, you can enter different commands to filter the packets to only see the ones you're interested in. You can also filter the trace (also while it is running). How can I filter packets to only see what I am looking for? It's the 4rth from the top left, after clicking on it, capture should stop and the wireshark symbol returns back to the blu color:įollowing an example of what you can see: You can finish to capture packets clicking on 'stop running trace' button. The trace should now be running and you should see the symbol of wireshark becoming green. Note you can also specify other settings (as for example the update the list of packets in real time) clicking on “Options” that will reveal the following window, and then click start: Select the ones you need and click 'start' to begin. To start a trace, click on the second icon from the upper left: Once installed you will be able to use Wireshark to view ethernet packets. How can I use Wireshark to capture packets? To install Wireshark you will need to go to and follow instructions. How can I download and install Wireshark?
It is also useful to have it installed in the laptop to open IP, ETH or PPP pcap files that you can collect on the Digi TransPort (but this document will not go into details on that matter). For example, if you see your laptop sending an ICMP packet and not receiving the reply, you can isolate the problem, being sure that is not your laptop that has some wrong settings as the wrong default gateway for example. It can be very useful in many cases, when you want to see what your unit is sending/receving in order to troubleshooting a problem. Wireshark is a tool that allow you to capture Ethernet packets sent/received on one or more interfaces of your laptop.