Quantcast
Viewing latest article 9
Browse Latest Browse All 11

How to Enable Remote Packet Capture with Wireshark

As of Firmware 6.3, Peplink devices can send packet information to an external client, where it can be analyzed by Wireshark.

To enable this feature, please follow these steps:

1) Download Wireshark and Netcat

Please follow the links to download the programs:

Wireshark Packet Analyzer

Netcat

2) Enter Netcat Command

Once Wireshark has been installed, navigate to the command prompt and adapt the following command to your installation.

C:\nc\nc.exe -l -p 12345 | “C:\Program Files\Wireshark\wireshark.exe” -ki –

At this point, Wireshark will open and begin waiting for the packet trace

Image may be NSFW.
Clik here to view.

3) Enable Remote Capture on the Peplink Router

Login to your device’s Web UI.

Image may be NSFW.
Clik here to view.

Access your device’s support page. This can be done by entering the following on your address bar:

http://ip address of your router/cgi-bin/MANGA/support.cgi

Once you have entered the support page, this screen will appear:

Image may be NSFW.
Clik here to view.

Check the checkbox next to Remote Capture, and then enter the IP address and port number of the external client that will receive the information, and the port number must be matched  with the port which defined in NetCat command as above.

Finally, click the Start button. The following message will confirm success:

Image may be NSFW.
Clik here to view.

At this point, Wireshark still might not show any activity. One possible reason is that the local firewall is blocking it. In that case, you will need to turn off the firewall to use this feature:

Image may be NSFW.
Clik here to view.

At this point, The Wireshark program on your client should begin receiving packet information:

Image may be NSFW.
Clik here to view.


Viewing latest article 9
Browse Latest Browse All 11

Trending Articles