Translate

Thursday, September 19, 2013

Some Useful Wireshark filters

Wire shark filter to show only the traffic between your computer and the ip address  204.2.196.138 (cnn.com)
ip.addr==204.2.196.138

Show only outgoing traffic to ip address 204.2.196.138
ip.dst==204.2.196.138

Show only incoming traffic from 204.2.196.138
ip.src==204.2.196.138

Show only http traffic
tcp.port==80

Show only outgoing http traffic
tcp.dstport==80

Show only incoming http traffic
tcp.srcport==80

Show only https traffic
tcp.port==443

Show only SQL traffic
tcp.port==1433

No comments:

Post a Comment

Comments will appear once they have been approved by the moderator