Frontline® 802.11 with Wireshark®

Capturing Using Frontline Wi-Fi Datasource with Wireshark®

Note: This topic is provided as a courtesy to our customers who want to use Wireshark in conjunction with the ComProbe 802.11 although the ComProbe software is fully capable of performing the same functions as Wireshark. Frontline does not support or maintain third party products. Should you have difficulty with your Wireshark product contact the manufacturer for support or maintenance.

Click on the "ComProbe 802.11 with Wireshark" short cut to launch and start capturing the Wi-Fi packets. If you do not see any packets on the Wireshark window then check the status message indication on the Wi-Fi Datasource window to see if sniffing has stopped. Click on the Start Start Sniffing button .

Wi-Fi Datasource Start Capturing

Datasource Stopped Sniffing

When the ComProbe 802.11 is sniffing the datasource will display the following message. Sniffing can be stopped by clicking the Stop button Stop Sniffing.

Wireshark 802.11 Sniffing

Datasource Sniffing

Wireshark Capture Menu

Wireshark Capture Dialog

Note: Whenever you give Start Capture command on Wireshark, the status message on the Wi-Fi Datasource window should display "Please START capturing on the Wireshark." If it is displaying a different message then you can use the Reset button on the Wi-Fi Datasource window or select Reset Reset or in the Sniffing menu to get back to this message.

 

Wireshark-802.11 Toolbar

Wi-Fi Datasource Toolbar

Wireshark-802.11 Sniffing Menu

Wi-Fi Datasource Sniffing Menu

Once the Wi-Fi Datasource starts capturing packets and sending them to Wireshark, you can pause and resume capturing using the Stop Stop Sniffing and StartStop Sniffing toolbar buttons on the Wi-Fi Datasource toolbar or the Sniffing menu. Note that the Restart command on the Wireshark window does not function. The workaround is to click Reset Reset Sniffing on the Wi-Fi Datasource then click Start on the Wireshark Capture menu. Also the Wireshark Capture Filters menu does not function, but you can use IO Settings menu on the Wi-Fi Datasource window or Sniffing menu for setting filters.

Known Issues with Wireshark

  • In Real Time capture mode (when you select Update list of packets in real time check-box in the Capture Options dialog), if you move the Wireshark window around on the desktop or click on anything on the Wireshark window, it freezes the desktop. You can unfreeze it by bringing up Windows Task Manager by pressing Ctrl+Alt+Delete.

    Wireshark Capture Options

    Wireshark Capture Options

  • If you capture more than a few millions of packets, e.g. 4 million, Wireshark crashes.