data:image/s3,"s3://crabby-images/60a3c/60a3cbcf31a0393aaa5e7eb6beb5d952bbf72803" alt="Diplaying wireshark ip v4 only"
data:image/s3,"s3://crabby-images/752fc/752fc4036fb88cd4e7a69192e6179d2b7f3e3ebf" alt="diplaying wireshark ip v4 only diplaying wireshark ip v4 only"
data:image/s3,"s3://crabby-images/ba523/ba5230dfaa583b302f548c512b3899cb111b795c" alt="diplaying wireshark ip v4 only diplaying wireshark ip v4 only"
You'll get list, in ascending order of frequency, of each unique src, dst and proto combination present within your sample file. But it is displaying only ARP, 0x0800, 0x8912, etc. For example, if you append this to that command line: |sort -n |uniq -c |sort -n As you can see, Wireshark is definitely capturing a lot of TCP packets.
data:image/s3,"s3://crabby-images/2ba2d/2ba2d34a9f7145615b3f85b31201766c831c5db0" alt="diplaying wireshark ip v4 only diplaying wireshark ip v4 only"
It will capture all the port traffic and show you all the port numbers in the specific connections. Under Linux (which is what I use), you can easily pipe the output of that into various other utility programs. Wireshark captures all the network traffic as it happens. If you'd prefer to eliminate the non-IPv4 packets, just add a filter: tshark -r -2 -Tfields -R ip -eip.src -eip.dst -eframe.protocols With that command line, you'll get exactly those fields, but be aware that some lines, such as those with ARP packets, won't have IP addresses (because they're not IP packets), and that IPv6 packets won't show IP addresses because those field names ( ip.src and ip.dst) are only for IPv4. So with that approach in mind, you could use this: tshark -r -2 -Tfields -eip.src -eip.dst -eframe.protocols You can also see advanced features by clicking capture, then selecting options. When I've done that sort of thing before, I typically use tshark to extract the data and then other tools (Python, Perl, awk, etc.) to further refine the resulting data. Upon launching the application, you’ll see the available network connections in the launch screen.
data:image/s3,"s3://crabby-images/60a3c/60a3cbcf31a0393aaa5e7eb6beb5d952bbf72803" alt="Diplaying wireshark ip v4 only"