Basic Knowledge About Wireshark Interface
Most people familiar with Wireshark by using the Wireshark graphical user interface (GUI). However, once Wireshark installed on your computer, it also built with several other supporting programs: TShark (the command-line version of Wireshark), and another five programs to help you manipulating, assessing, and creating capture files editcap, mergecap, text2pcap capinfos and dumpcap. Those supporting programs can also be used together to get very powerful capture file manipulation result. For example, files that has been captured with TShark then edited with editcap, and can be merged into a single packet capture file with mergecap. They can then be viewed either with TShark or Wireshark.
There are a large number of parameters you can change in the Preferences window, including what data is presented, where files are saved by default, what is the default interface that Wireshark captures data from, and many more.


























No Comment to " Basic Knowledge About Wireshark Interface "