Wireshark (hore loogu yaqaanay Ethereal) waa falanqeeye borotokool shabakad bilaash ah. Wireshark waa loo adeegsaday falanqaynta shabakada iyo xalka, maadaama barnaamijkani noo ogolaanayo inaan aragno waxa ka dhacaya shabakada iyo waa heerka dhabta ah ee shirkadaha badan ururada ganacsiga iyo kuwa aan macaash doonka ahayn, wakaaladaha dawlada iyo xarumaha waxbarashada.
App Tani wuxuu ku shaqeeyaa inta badan nidaamyada hawlgalka ee Unix waana la jaan qaadi karaas, oo ay ku jiraan Linux, Microsoft Windows, Solaris, FreeBSD, NetBSD, OpenBSD, Android, iyo Mac OS X.
Barnaamijkan Waxay leedahay interface si sahlan loo isticmaali karo oo naga caawin kara inaan tarjunno xogta boqolaal borotokoolyo dhammaan noocyada shabakadaha waaweyn.
Xirmooyinka macluumaadkaan waxaa lagu eegi karaa waqtiga dhabta ah ama lagu falanqeyn karaa qadka tooska ah, iyadoo daraasiin ah qaabab feyl qabasho / raad raac ah oo ay ku jiraan CAP iyo ERF.
Ku saabsan nooca cusub ee Wireshark 3.0.0
Saacado yar kahor laanta cusub ee shabakadda Wireshark 3.0.0 ayaa la sii daayay taas oo mid ka mid ah waxyaabaha cusub ee ugu waaweyn ay tahay taas Wireshark 3 wuxuu tirtirayaa hirgalinta adeegsiga isticmaale ee hore ee GTK +.
Hagaag hadda laankan ugu dambeeya ayaa lagu tuuray lilaa Wireshark 2 UI, waxaa laga raray GTK + loona wareejiyay Qt, inkasta oo qaabkii hore loo heli jiray ikhtiyaar ahaan (kuwa doorbida kan hore).
Nidaamka cusubi mar dambe lama jaan qaadi karo Qt 4.x, hadda hawlgalka ugu yaraan Qt 5.2 ayaa looga baahan yahay.
Taageero weyn
Noocaan cusub ee Wireshark 3.0.0 waxay kudareysaa taageerada bilowga ah calaamadaha PKCS # 11 si decryry RSA loogu sameeyo TLS iyo sidoo kale uruurinta soo noqnoqda, taas oo u oggolaanaysa isticmaale kasta inuu xaqiijiyo in soo-ururinta binary ee la soo bandhigay ay ku saleysan tahay koodhka isha la daabacay
Sidoo kale, lagu daray taageerada loogu talagalay beddelka timestamp ee borotokoolka UDP / UDP-Lite iyo taageerida adeegsiga wakiil wakiil ee iskuxirka SSH iyo iskudhafka sshdump iyo ciscodump.
Tan waxay horumariyeyaashu awood u siinayeen awooda ay ku kala saari karaan DTLS iyo TLS faylasha pcapng, oo ay ku jiraan DSB oo leh furayaal la qabtay.
Qaabab cusub
Qodob muhiim ah oo aan jeclaan lahayn inaan iftiiminno ayaa ah in horumariyayaashuLagu daray taageerada nidaamka dhismaha si loo soo saaro xirmooyinka rakibida iskeed u sameysan ee qaabka AppImage.
Qeybaha cusub ayaa lagu daray
Gudaha Wireshark 3.0.0 moduleka falanqaynta TCP, qaabeynta "Dib u uruur qaybaha si amar la'aan ah" ayaa lagu daray., taas oo kuu ogolaaneysa inaad ku xalliso dhibaatooyinka falanqaynta iyo goynta qulqulka qulqulka marka qaybaha ay ka baxsan yihiin nidaamka.
Sidoo kale, Qeybta 'WireGuard Dissector module' ayaa lagu daray si loo jajabiyo taraafikada 'WireGuard VPN' (haddii aad furayaal leedahay).
Buugga baaritaanka 'BOOTP parser' waxaa loo beddelay DHCP iyo moduleka SSL oo loo beddelay TLS
Sidee loo rakibaa Wireshark 3.0.0 Ubuntu iyo derivatives?
Haatan nooca 3.0.0 wali laguma cusboonaysiin rasmiga rasmiga ah ee arjiga. Laakiin tani ma qaadan doonto waqti dheer maxaa yeelay waa saacado uun in tan la cusbooneysiiyo.
Waqtigan xaadirka ah habka kaliya ee lagu rakibo nuqulkan cusub ayaa ah adigoo soo dejinaya koodhka isha ee arjiga isla markaana ku ururinaaya nidaamkaaga Wireshark 3.0.0.
Haddii aad sidaa u jeceshahay, waad ku dari kartaa hada keydka rasmiga ah ee arjiga nidaamkaaga. Tan waxaa lagu dari karaa adoo ka furaya terminaal Ctrl + Alt + iyo fulinta:
sudo add-apt-repository ppa:wireshark-dev/stable sudo apt-get update
Mar dambe si loo rakibo arjiga kaliya ku qor kuwan soo socda boosteejada:
sudo apt-get install wireshark
Waa muhiim in la sheego taas Inta lagu guda jiro hawsha rakibida waxaa jira talaabooyin taxane ah oo la raacayo oo fulinaya Kalasaarista Mudnaanta, U oggolaanaysa Wireshark GUI inay u shaqeyso sidii isticmaale caadi ah halka qashin-qubka (kaas oo ka soo ururinaya baakado iskuxiradooda) ay la socoto mudnaanta sare ee loo baahan yahay ee dabagalka.
Haddii ay dhacdo inaad si xun ugu jawaabtay oo aad jeclaan lahayd inaad tan beddesho. Si tan loo gaaro, terminal waxaan ku qoreynaa amarka soo socda:
sudo dpkg-reconfigure wireshark-common
Halkaan waa inaan dooranaa haa markii nala weyddiiyo haddii kuwa super-superers aysan awoodin inay soo qabtaan xirmooyinka.
Haddii ay taasi shaqeyn weydo, waxaan ku xallin karnaa dhibaatadan annagoo fulinayna waxyaabaha soo socda:
sudo chgrp YOUR_USER_NAME /usr/bin/dumpcap sudo chmod +x /usr/bin/dumpcap sudo setcap cap_net_raw,cap_net_admin+eip /usr/bin/dumpcap
Ugu dambeyntiina, waa inaan ka raadinno arjiga ku jira liiska arjiga ee qaybta qalabka ama internetka waxaanan ku arki doonnaa astaanta halkaas si ay u socodsiiso
Bakhaarka "http://ppa.launchpad.net/wireshark-dev/stable/ubuntu cosmic Release" ma laha feyl siideyn.
Qaali, galab wanaagsan Kaliya waxaan ku rakibay ppa u dhigma, laakiin waxaan u arkaa inay tahay nooca 2.6.8 oo aan ahayn kii ugu dambeeyay. Ma taqaanaa sida loo dalbado?