Existing users, log in.  New users, create a free account.  Lost password?

Mac OS X  |  Security / Privacy  |  Encryption / File Protection  |  Wireshark

Wireshark

Wireshark - 1.2.4

Perform thorough analysis of your network protocol.

All Time: (1.0)
This Version: Not rated (0.0)
Current Version: 1.2.4
Release Date: 2009-11-16
License: Freeware
Downloads (this version): 434
Downloads (all versions): 7,371

Information Related to Version:

Broken Link? Newer Version? Tell us!

Product Description:

Wireshark is the world's foremost network protocol analyzer, and is the standard in many industries. It is the continuation of a project that started in 1998. Hundreds of developers around the world have contributed to it, and it is still under active development. Read/write many different aWireshark is the world's foremost network protocol analyzer, and is the de facto (and often de jure) standard across many industries and educational institutions. Wireshark development thrives thanks to the contributions of networking experts across the globe. It is the continuation of a project that started in 1998.

Features Wireshark has a rich feature set which includes the following:
  • Deep inspection of hundreds of protocols, with more being added all the time
  • Live capture and offline analysis
  • Standard three-pane packet browser
  • Multi-platform: Runs on Windows, Linux, OS X, Solaris, FreeBSD, NetBSD, and many others
  • Captured network data can be browsed via a GUI, or via the TTY-mode TShark utility
  • The most powerful display filters in the industry
  • Rich VoIP analysis
  • Read/write many different capture file formats: tcpdump (libpcap), Pcap NG, Catapult DCT2000, Cisco Secure IDS iplog, Microsoft Network Monitor, Network General SnifferÃ???Ã??Ã?® (compressed and uncompressed), SnifferÃ???Ã??Ã?® Pro, and NetXrayÃ???Ã??Ã?®, Network Instruments Observer, NetScreen snoop, Novell LANalyzer, RADCOM WAN/LAN Analyzer, Shomiti/Finisar Surveyor, Tektronix K12xx, Visual Networks Visual UpTime, WildPackets EtherPeek/TokenPeek/AiroPeek, and many others
  • Capture files compressed with gzip can be decompressed on the fly
  • Live data can be read from Ethernet, IEEE 802.11, PPP/HDLC, ATM, Bluetooth, USB, Token Ring, Frame Relay, FDDI, and others (depending on your platform)
  • Decryption support for many protocols, including IPsec, ISAKMP, Kerberos, SNMPv3, SSL/TLS, WEP, and WPA/WPA2
  • Coloring rules can be applied to the packet list for quick, intuitive analysis
  • Output can be exported to XML, PostScriptÃ???Ã??Ã?®, CSV, or plain text
capture file formats: tcpdump (libpcap), Catapult DCT2000, Cisco Secure IDS iplog, Microsoft Network Monitor, NAI Sniffer (compressed and uncompressed), Sniffer Pro, and NetXray, Network Instruments Observer, Novell LANalyzer, RADCOM WAN/LAN Analyzer, Shomiti/Finisar Surveyor, Tektronix K12xx, Visual Networks Visual UpTime, and WildPackets EtherPeek/TokenPeek/AiroPeek.

What's new in this version:

A description of changes can be found at http://www.wireshark.org/docs/relnotes/wireshark-1.2.4.html.

Operating System Requirements:

This product is designed to run on the following operating systems:

  • Mac OS X 10.5 Intel
  • Mac OS X 10.5 PPC

Screenshots:

Download Links:

Your Installed Versions:


 

Feedback Summary:

This Version:
Overall Rating: Not rated (0.0) Features: Not rated (0.0) Support: Not rated (0.0)
Ease of Use: Not rated (0.0) Quality / Stability: Not rated (0.0) Price: Not rated (0.0)
Add Your Feedback

Key to Types of Feedback:

ReviewsReviews   TroubleshootingTroubleshooting   Usage TipsUsage Tips   Developer NotesDeveloper Notes   CommentaryCommentary   Featured ReviewsFeatured Reviews

Wireshark Usage TipGetting Wireshark running on Snow Leopard - Version: 1.2.3, 11/11/2009 12:05PM PST

chockyII
If you've tried and failed to get Wireshark running on Snow Leopard here's the trick:
(Thanks to Michael Gracie and JOSTEIN)

Insure that X11 is installed on your Mac. It can be found on the Snow Leopard Installer DVD.

Read and follow the instructions in the Wireshark "Read Me" file. (Believe it or not this is an important step)

THEN

In the Terminal execute the following command:

sudo chown -R root:wheel /Library/StartupItems/ChmodBPF

(you did follow the instructions in the "Read Me" first, right?)

Launch Wireshark (This may take some time the first time you launch it)
Select the "Preferences" item from Wireshark's "Edit" menu.

When the preferences window opens you will need to drag it to the right in order to access the sidebar.
Select "Name Resolution" from the sidebar and click the "Edit" button beside "SMI (MIB and PIB paths)"
Click the "New" button and type "/usr/share/snmp/mibs/" (don't include the quotes) in the text field.
Click "Apply" and "OK" at each window until you're back to the main Wireshark window.
Quit Wireshark and restart your computer.

Happy sniffing!

Post a commentAlert Admin

Wireshark Troubleshooting ReportDoes it work on 10.5.8 with a G5 Power PC - Version: 1.2.3, 10/29/2009 02:17AM PST

lenwhyte
Last time I installed this, it hosed my system and I had to restore from backup.
I'd like to know whether others have had success?
Post a commentAlert Admin

Wireshark ReviewDoesn't work on 10.5.x ! - Version: 1.2.2, 9/24/2009 02:20PM PST

(0 of 1 users found this comment useful)

herald62us
After messing about for hours with errors and install problems, the program finally launches
without crashing. Unfortunately it still has many startup(?) errors, and does not show any interfaces for scanning.

Pretty crap. I might as well stick with good ol tcpdump.
Post a commentAlert Admin