Posts Tagged ‘网络采集’

Wireshark网络采集分析软件安装

星期二, 五月 7th, 2013

转载请注明出处:http://www.myzhenai.com/thread-15549-1-1.html http://www.myzhenai.com.cn/post/1093.html
wireshark:http://www.wireshark.org/ 官方网站
网络管理员使用Wireshark来检测网络问题,网络安全工程师使用Wireshark来检查资讯安全相关问题,开发者使用Wireshark来为新的通讯协定除错,普通使用者使用Wireshark来学习网络协定的相关知识。当然,有的人也会“居心叵测”的用它来寻找一些敏感信息……
Wireshark不是入侵侦测软件(Intrusion DetectionSoftware,IDS)。对于网络上的异常流量行为,Wireshark不会产生警示或是任何提示。然而,仔细分析Wireshark撷取的封包能够帮助使用者对于网络行为有更清楚的了解。Wireshark不会对网络封包产生内容的修改,它只会反映出目前流通的封包资讯。 Wireshark本身也不会送出封包至网络上。
wireshark使用教程: http://vdisk.weibo.com/s/AqWzD http://vdisk.weibo.com/s/AqWue http://pan.baidu.com/share/link?shareid=559685&uk=3744424561 http://t.qq.com/p/t/239385006251080
安装方法:

#yum install wireshark*
[root@localhost RucLinux]# yum install wireshark*
Loaded plugins: fastestmirror, refresh-packagekit, security
Loading mirror speeds from cached hostfile
 * base: mirrors.btte.net
 * extras: mirrors.yun-idc.com
 * updates: mirrors.yun-idc.com
base                                                     | 3.7 kB     00:00     
extras                                                   | 3.5 kB     00:00     
updates                                                  | 3.5 kB     00:00     
Setting up Install Process
Resolving Dependencies
--> Running transaction check
---> Package wireshark.i686 0:1.2.15-2.el6_2.1 will be installed
--> Processing Dependency: libsmi.so.2 for package: wireshark-1.2.15-2.el6_2.1.i686
---> Package wireshark-devel.i686 0:1.2.15-2.el6_2.1 will be installed
---> Package wireshark-gnome.i686 0:1.2.15-2.el6_2.1 will be installed
--> Running transaction check
---> Package libsmi.i686 0:0.4.8-4.el6 will be installed
--> Finished Dependency Resolution

Dependencies Resolved

================================================================================
 Package                Arch        Version                   Repository   Size
================================================================================
Installing:
 wireshark              i686        1.2.15-2.el6_2.1          base        9.9 M
 wireshark-devel        i686        1.2.15-2.el6_2.1          base        147 k
 wireshark-gnome        i686        1.2.15-2.el6_2.1          base        619 k
Installing for dependencies:
 libsmi                 i686        0.4.8-4.el6               base        2.4 M

Transaction Summary
================================================================================
Install       4 Package(s)

Total download size: 13 M
Installed size: 65 M
Is this ok [y/N]: y
Downloading Packages:
(1/4): libsmi-0.4.8-4.el6.i686.rpm                       | 2.4 MB     00:05     
(2/4): wireshark-1.2.15-2.el6_2.1.i686.rpm               | 9.9 MB     00:19     
(3/4): wireshark-devel-1.2.15-2.el6_2.1.i686.rpm         | 147 kB     00:00     
(4/4): wireshark-gnome-1.2.15-2.el6_2.1.i686.rpm         | 619 kB     00:01     
--------------------------------------------------------------------------------
Total                                           489 kB/s |  13 MB     00:27     
Running rpm_check_debug
Running Transaction Test
Transaction Test Succeeded
Running Transaction
  Installing : libsmi-0.4.8-4.el6.i686                                      1/4 
  Installing : wireshark-1.2.15-2.el6_2.1.i686                              2/4 
  Installing : wireshark-devel-1.2.15-2.el6_2.1.i686                        3/4 
  Installing : wireshark-gnome-1.2.15-2.el6_2.1.i686                        4/4 
  Verifying  : wireshark-devel-1.2.15-2.el6_2.1.i686                        1/4 
  Verifying  : libsmi-0.4.8-4.el6.i686                                      2/4 
  Verifying  : wireshark-gnome-1.2.15-2.el6_2.1.i686                        3/4 
  Verifying  : wireshark-1.2.15-2.el6_2.1.i686                              4/4 

Installed:
  wireshark.i686 0:1.2.15-2.el6_2.1                                             
  wireshark-devel.i686 0:1.2.15-2.el6_2.1                                       
  wireshark-gnome.i686 0:1.2.15-2.el6_2.1                                       

Dependency Installed:
  libsmi.i686 0:0.4.8-4.el6                                                     

Complete!
[root@localhost RucLinux]# 

Screenshot