Results 1 to 8 of 8

Thread: wireshark not part of knoppix anymore?

  1. #1
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168

    wireshark not part of knoppix anymore?

    $ sudo wireshark &
    [1] 28262
    $ sudo: wireshark: command not found


    [1]+ Exit 1 sudo wireshark


    $ which wireshark


    $ uname -a
    Linux Microknoppix 4.7.9-64 #19 SMP PREEMPT Sat Oct 22 02:39:01 CEST 2016 x86_64 GNU/Linux

  2. #2
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168
    What is confusing to me is that I also get:

    $ dpkg -l | grep wireshark
    ii libwireshark-data 2.2.0+g5368c50-1 all network packet dissection library -- data files
    ii libwireshark8:i386 2.2.0+g5368c50-1 i386 network packet dissection library -- shared library
    ii wireshark 2.2.0+g5368c50-1 i386 network traffic analyzer - meta-package
    ii wireshark-common 2.2.0+g5368c50-1 i386 network traffic analyzer - common files
    ii wireshark-gtk 2.2.0+g5368c50-1 i386 network traffic analyzer - GTK+ version

  3. #3
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Run:

    Code:
    wireshark-gtk -h

  4. #4
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Useful information here:
    https://wiki.wireshark.org/CaptureSe...lation_methods

    and here:
    http://anonscm.debian.org/viewvc/col...an?view=markup

    Running:

    Code:
    sudo wireshark-gtk
    may work but with warnings that it is dangerous.

  5. #5
    Administrator Site Admin-
    Join Date
    Apr 2003
    Location
    USA
    Posts
    5,441
    Recomendations:
    Live DVD with Wireshark: Kali Linux
    Installed Linux with Wireshartk available: Debian
    ---
    Verifying of md5 checksum and burning a CD at slow speed are important.

  6. #6
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Quote Originally Posted by Harry Kuhman View Post
    Recomendations:
    Live DVD with Wireshark: Kali Linux
    Installed Linux with Wireshartk available: Debian
    What's wrong with Knoppix?

  7. #7
    Administrator Site Admin-
    Join Date
    Apr 2003
    Location
    USA
    Posts
    5,441
    Quote Originally Posted by philo View Post
    What's wrong with Knoppix?
    Well, to quote philo: " may work but with warnings that it is dangerous. "

    I thought that the OP was simply looking for a live DVD with Wireshark and made a suggestion. Wireshark is there and given the nature of Kali Linux, Wireshark is unlikely to vanish from it any time soon. When I'm working with a Live DVD I generally am looking to get something done as simply as I can and don't like to have to remember magic prayers to the Linux gods to get things started. I also don't like warnings, at least one reason for that is that I don't think that I know Linux well enough to determine if I can safely ignore the warnings.

    Alternately, if the OP is trying to work with an installed system, then I recommend a pure system built from one distro, not the Knoppix approach of hacking different systems together.
    ---
    Verifying of md5 checksum and burning a CD at slow speed are important.

  8. #8
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168
    running wireshark . . .

    _USR=$(whoami)
    echo "// __ \$_USR: ${_USR}"


    sudo chgrp "${_USR}" /usr/bin/dumpcap
    sudo setcap cap_net_raw,cap_net_admin+eip /usr/bin/dumpcap


    _LOG=$(date +%Y%m%d%H%M%S)"_wireshark-gtk.log"


    wireshark-gtk -i eth0 -w "${_LOG}" 2>&1



Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


LOT 15 COUNT FS SFP-10G-T 10BASE-T SFP+ Copper 100m RJ-45 Transceiver Module picture

LOT 15 COUNT FS SFP-10G-T 10BASE-T SFP+ Copper 100m RJ-45 Transceiver Module

$461.02



NEW Sealed Cisco SFP-10G-LR 10GBASE-LR SFP+ 1310nm 10km *US Shipping* picture

NEW Sealed Cisco SFP-10G-LR 10GBASE-LR SFP+ 1310nm 10km *US Shipping*

$16.60



New Cisco GLC-TE 1G SFP Copper RJ45 100m 1000BASE-T Transceiver Module picture

New Cisco GLC-TE 1G SFP Copper RJ45 100m 1000BASE-T Transceiver Module

$18.43



LOT OF 10 455883-B21 HP 10Gb SR SFP Transceiver 455885-001 456096-001 picture

LOT OF 10 455883-B21 HP 10Gb SR SFP Transceiver 455885-001 456096-001

$55.31



NEW FS SFP-10G-T 10GBASE T SFP+ 30M Transceiver Module (Lot of 1 Unit) picture

NEW FS SFP-10G-T 10GBASE T SFP+ 30M Transceiver Module (Lot of 1 Unit)

$36.84



🔥🔥🔥SFP-10G-SR V03 Original CISCO 10-2415-03 850nm 10GB SFP+ Multi Module🔥🔥 picture

🔥🔥🔥SFP-10G-SR V03 Original CISCO 10-2415-03 850nm 10GB SFP+ Multi Module🔥🔥

$6.27



For Cisco SFP-10G-T, Ubiquiti UF-RJ45-10G Transceiver, SFP+ to RJ45 10GBase-T picture

For Cisco SFP-10G-T, Ubiquiti UF-RJ45-10G Transceiver, SFP+ to RJ45 10GBase-T

$43.79



Cisco SFP-10G-SR 10-2415-03  10 Gigabit Transceiver   LOT OF 10   @ C picture

Cisco SFP-10G-SR 10-2415-03 10 Gigabit Transceiver LOT OF 10 @ C

$36.87



LOT OF 10 HPE JD092B X130 10G SFP+ LC SR Transceiver picture

LOT OF 10 HPE JD092B X130 10G SFP+ LC SR Transceiver

$36.88



NEW Sealed Cisco GLC-TE SFP Copper RJ45 100m 1000BASE-T Transceiver*US Shipping* picture

NEW Sealed Cisco GLC-TE SFP Copper RJ45 100m 1000BASE-T Transceiver*US Shipping*

$16.60