Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Section

Direct remote tracing in Wireshark

The trace can be started direct from your PC.
First install the sshdump tool in Wireshark:




Now you have a new Interface available in Wireshark - SSH remote Capture



Configure the SSH remote capture Interface for your environment:



Enter the IP-Adress from the device you want to capture e.g. Integrator, Dect-Manager or Bases.
And also SSH server username "cli" and your cli password on authentication tab.

Hint: after closing wireshark, or change something in the interface settings, you must reenter your password.



Activate "Use sudo on the remote machine".



please check, if the Remote capture filter is set propably by wireshark. you can force this by pressing the "Restore default value of the item" button.


Image Added


Save the settings and close the interface settings.
Now you can Start capturing directly from the remote device to your local pc.

Therefore doubleclick on the interfache, or choose the interface and click on the blue wireshark start capture button in the main tool bar.


Image Added