Results 1 to 8 of 8

Thread: wireshark not part of knoppix anymore?

  1. #1
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168

    wireshark not part of knoppix anymore?

    $ sudo wireshark &
    [1] 28262
    $ sudo: wireshark: command not found


    [1]+ Exit 1 sudo wireshark


    $ which wireshark


    $ uname -a
    Linux Microknoppix 4.7.9-64 #19 SMP PREEMPT Sat Oct 22 02:39:01 CEST 2016 x86_64 GNU/Linux

  2. #2
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168
    What is confusing to me is that I also get:

    $ dpkg -l | grep wireshark
    ii libwireshark-data 2.2.0+g5368c50-1 all network packet dissection library -- data files
    ii libwireshark8:i386 2.2.0+g5368c50-1 i386 network packet dissection library -- shared library
    ii wireshark 2.2.0+g5368c50-1 i386 network traffic analyzer - meta-package
    ii wireshark-common 2.2.0+g5368c50-1 i386 network traffic analyzer - common files
    ii wireshark-gtk 2.2.0+g5368c50-1 i386 network traffic analyzer - GTK+ version

  3. #3
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Run:

    Code:
    wireshark-gtk -h

  4. #4
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Useful information here:
    https://wiki.wireshark.org/CaptureSe...lation_methods

    and here:
    http://anonscm.debian.org/viewvc/col...an?view=markup

    Running:

    Code:
    sudo wireshark-gtk
    may work but with warnings that it is dangerous.

  5. #5
    Administrator Site Admin-
    Join Date
    Apr 2003
    Location
    USA
    Posts
    5,441
    Recomendations:
    Live DVD with Wireshark: Kali Linux
    Installed Linux with Wireshartk available: Debian
    ---
    Verifying of md5 checksum and burning a CD at slow speed are important.

  6. #6
    Senior Member
    Join Date
    Dec 2012
    Posts
    152
    Quote Originally Posted by Harry Kuhman View Post
    Recomendations:
    Live DVD with Wireshark: Kali Linux
    Installed Linux with Wireshartk available: Debian
    What's wrong with Knoppix?

  7. #7
    Administrator Site Admin-
    Join Date
    Apr 2003
    Location
    USA
    Posts
    5,441
    Quote Originally Posted by philo View Post
    What's wrong with Knoppix?
    Well, to quote philo: " may work but with warnings that it is dangerous. "

    I thought that the OP was simply looking for a live DVD with Wireshark and made a suggestion. Wireshark is there and given the nature of Kali Linux, Wireshark is unlikely to vanish from it any time soon. When I'm working with a Live DVD I generally am looking to get something done as simply as I can and don't like to have to remember magic prayers to the Linux gods to get things started. I also don't like warnings, at least one reason for that is that I don't think that I know Linux well enough to determine if I can safely ignore the warnings.

    Alternately, if the OP is trying to work with an installed system, then I recommend a pure system built from one distro, not the Knoppix approach of hacking different systems together.
    ---
    Verifying of md5 checksum and burning a CD at slow speed are important.

  8. #8
    Senior Member registered user
    Join Date
    Dec 2004
    Posts
    168
    running wireshark . . .

    _USR=$(whoami)
    echo "// __ \$_USR: ${_USR}"


    sudo chgrp "${_USR}" /usr/bin/dumpcap
    sudo setcap cap_net_raw,cap_net_admin+eip /usr/bin/dumpcap


    _LOG=$(date +%Y%m%d%H%M%S)"_wireshark-gtk.log"


    wireshark-gtk -i eth0 -w "${_LOG}" 2>&1



Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  


Cisco SG110 24 Port Gigabit Ethernet Switch w/ 2 x SFP SG110-24 picture

Cisco SG110 24 Port Gigabit Ethernet Switch w/ 2 x SFP SG110-24

$117.00



H3C SFP-FE-T-A Compatible 100BASE-T SFP Copper RJ-45 100m -93651 picture

H3C SFP-FE-T-A Compatible 100BASE-T SFP Copper RJ-45 100m -93651

$38.00



GENUINE CISCO DS-SFP-FC32G-SW SFP NEW SEALED SEE PHOTOS SHIPS FREE picture

GENUINE CISCO DS-SFP-FC32G-SW SFP NEW SEALED SEE PHOTOS SHIPS FREE

$74.99



Sonicwall 02-SSC-1874 Compatible 10GBASE-T Copper SFP+ RJ-45 30M Transceiver-876 picture

Sonicwall 02-SSC-1874 Compatible 10GBASE-T Copper SFP+ RJ-45 30M Transceiver-876

$189.05



Genuine Cisco SFP-10G-SR V03 10GBASE-SR SFP+ Transceiver Module 10-2415-03  picture

Genuine Cisco SFP-10G-SR V03 10GBASE-SR SFP+ Transceiver Module 10-2415-03

$8.00



For Cisco SFP-10G-T, Ubiquiti UF-RJ45-10G Module 10G SFP+ to RJ45 10GBase-T picture

For Cisco SFP-10G-T, Ubiquiti UF-RJ45-10G Module 10G SFP+ to RJ45 10GBase-T

$48.59



GENUINE Cisco SFP-GE-T EXT 30-1421-01 USA 1000BASE-T RJ45 SFP Transceiver picture

GENUINE Cisco SFP-GE-T EXT 30-1421-01 USA 1000BASE-T RJ45 SFP Transceiver

$9.99



Lot of 10 - HP 10Gb SR SFP+ Transceiver 455883-B21 455885-001 456096-001 850nm picture

Lot of 10 - HP 10Gb SR SFP+ Transceiver 455883-B21 455885-001 456096-001 850nm

$23.99



NEW Sealed Cisco SFP-10G-SR-S 10G SR SFP+ Module 850nmMM *US Shipping* picture

NEW Sealed Cisco SFP-10G-SR-S 10G SR SFP+ Module 850nmMM *US Shipping*

$15.00



LOT OF 20 Genuine Cisco SFP-10G-SR V03 10GBASE-SR SFP+ Transceiver Module picture

LOT OF 20 Genuine Cisco SFP-10G-SR V03 10GBASE-SR SFP+ Transceiver Module

$89.00