【Wireshark】Chapter 2. Building and Installing Wireshark

本文档介绍了Wireshark的安装过程,包括Windows、macOS和UNIX系统的安装步骤。在Windows下,提供了安装组件的选择,如Wireshark、TShark等,并详细说明了安装路径、Npcap的安装和更新。在UNIX系统中,提到了从RPM、deb包安装以及源码编译的方法。此外,还提及了Wireshark的更新机制。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

2.1. Introduction

As with all things there must be a beginning and so it is with Wireshark. To use Wireshark you must first install it. If you are running Windows or macOS you can download an official release at https://www.wireshark.org/download.html, install it, and skip the rest of this chapter.

If you are running another operating system such as Linux or FreeBSD you might want to install from source. Several Linux distributions offer Wireshark packages but they commonly provide out-of-date versions. No other versions of UNIX ship Wireshark so far. For that reason, you will need to know where to get the latest version of Wireshark and how to install it.

This chapter shows you how to obtain source and binary packages and how to build Wireshark from source should you choose to do so.

The general steps are the following:

  • Download the relevant package for your needs, e.g., source or binary distribution.
  • For source distributions, compile the source into a binary. This may involve building and/or installing other necessary packages.
  • Install the binaries into their final destinations.

2.2. Obtaining the source and binary distributions

You can obtain both source and binary distributions from the Wireshark main page or the download page at https://www.wireshark.org/download.html. Select the package most appropriate for your system.

2.3. Installing Wireshark under Windows

The official Windows packages can be downloaded from the Wireshark main page or the download page. Installer names contain the platform and version. For example, Wireshark-win64-3.7.1.exe installs Wireshark 3.7.1 for 64-bit Windows. The Wireshark installer includes Npcap which is required for packet capture. Windows packages automatically update. See Section 2.8, “Updating Wireshark” for details.

Simply download the Wireshark installer from https://www.wireshark.org/download.html and execute it. Official packages are signed by Sysdig, Inc… You can choose to install several optional components and select the location of the installed package. The default settings are recommended for most users.

2.3.1. Installation Components

On the Choose Components page of the installer you can select from the following:

  • Wireshark - The network protocol analyzer that we all know and mostly love.
  • TShark - A command-line network protocol analyzer. If you haven’t tried it you should.
  • Plugins & Extensions - Extras for the Wireshark and TShark dissection engines
    • Dissector Plugins - Plugins with some extended dissections.
    • Tree Statistics Plugins - Extended statistics.
    • Mate - Meta Analysis and Tracing Engine - User configurable extension(s) of the display filter engine, see Chapter 12, MATE for details.
    • SNMP MIBs - SNMP MIBs for a more detailed SNMP dissection.
  • Tools - Additional command line tools to work with capture files
    • Editcap - Reads a capture file and writes some or all of the packets into another capture file.
    • T
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值