OperateLab
  • Home
  • Computers & Electronics
  • Technology
  • Reviews
No Result
View All Result
  • Home
  • Computers & Electronics
  • Technology
  • Reviews
OperateLab
No Result
View All Result

Home » Reviews » How to Install Wireshark on Ubuntu Linux [Latest Version]

How to Install Wireshark on Ubuntu Linux [Latest Version]

David Wilson by David Wilson
November 25, 2020
in Reviews, Technology, Windows
0
466
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

Wireshark is a free and open-source network protocol analyzer widely used around the globe.

With Wireshark, you can capture incoming and outgoing packets of a network in real-time and use it for network troubleshooting, packet analysis, software and communication protocol development, and many more.

It is available on all major desktop operating systems like Windows, Linux, macOS, BSD and more.

In this tutorial, I will guide you to install Wireshark on Ubuntu and other Ubuntu-based distributions. I’ll also show a little about setting up and configuring Wireshark to capture packets.

Installing Wireshark on Ubuntu based Linux distributions

Wireshark Ubuntu

Wireshark is available on all major Linux distributions. You should check out the official installation instructions. because in this tutorial, I’ll focus on installing the latest Wireshark version on Ubuntu-based distributions only.

Wireshark is available in the Universe repository of Ubuntu. You can enable universe repository and then install it like this:

sudo add-apt-repository universe
sudo apt install wireshark

One slight problem in this approach is that you might not always get the latest version of Wireshark.

For example, in Ubuntu 18.04, if you use the apt command to check the available version of Wireshark, it is 2.6.

[email protected]:~$ apt show wireshark
Package: wireshark
Version: 2.6.10-1~ubuntu18.04.0
Priority: optional
Section: universe/net
Origin: Ubuntu
Maintainer: Balint Reczey <[email protected]>

However, Wireshark 3.2 stable version has been released months ago. New release brings new features, of course.

So, what do you do in such case? Thankfully, Wiresshark developers provide an official PPA that you can use to install the latest stable version of Wireshark on Ubuntu and other Ubuntu-based distributions.

I hope you are acquainted with PPA. If not, please read our excellent guide on PPA to understand it completely.

Open a terminal and use the following commands one by one:

sudo add-apt-repository ppa:wireshark-dev/stable
sudo apt update
sudo apt install wireshark

Even if you have an older version of Wireshark installed, it will be updated to the newer version.

While installing, you will be asked whether to allow non-superusers to capture packets. Select Yes to allow and No to restrict non-superusers to capture packets & finish the installation.

Running Wireshark without sudo

If you have selected No in the previous installation, then run the following command as root:

sudo dpkg-reconfigure wireshark-common

And select Yes by pressing the tab key and then using enter key:
Yes

Since you have allowed the non-superuser to capture packets, you have to add the user to wireshark group. Use the usermod command to add yourself to the wireshark group.

sudo usermod -aG wireshark $(whoami)

Finally, restart your Ubuntu system to make the necessary changes to your system.

Starting Wireshark

Launching Wireshark application can be done from the application launcher or the CLI.

To start from CLI, just type wireshark on your console:

wireshark

From GUI, search for Wireshark application on the search bar and hit enter.
Wire

Now let’s play with Wireshark.

Capturing packets using Wireshark

When you start Wireshark, you will see a list of interfaces that you can use to capture packets to and from.

There are many types of interfaces available which you can monitor using Wireshark such as, Wired, External devices, etc. According to your preference, you can choose to show specific types of interfaces in the welcome screen from the marked area in the given image below.
Interfaces

For instance, I listed only the Wired network interfaces.
Intoption

Next, to start capturing packets, you have to select the interface (which in my case is ens33) and click on the Start capturing packets icon as marked in the image below.
Start capturing packets with Wireshark

You can also capture packets to and from multiple interfaces at the same time. Just press and hold the CTRL button while clicking on the interfaces that you want to capture to and from and then hit the Start capturing packets icon as marked in the image below.

Selint
Next, I tried using ping google.com command in the terminal and as you can see, many packets were captured.
Captured packets in Wireshark

Captured packets

Now you can select on any packet to check that particular packet. After clicking on a particular packet you can see the information about different layers of TCP/IP Protocol associated with it.
Packet info in Wireshark

You can also see the RAW data of that particular packet at the bottom as shown in the image below.

Raw

This is why end-to-end encryption is important

Imagine you are logging into a website that doesn’t use HTTPS. Anyone on the same network as you can sniff the packets and see the user name and password in the RAW data.
This is why most chat applications use end to end encryption and most websites these days use https (instead of http).

Stopping packet capture in Wireshark

You can click on the red icon as marked in the given image to stop capturing Wireshark packets.

Stopcapture

Save captured packets to a file

You can click on the marked icon in the image below to save captured packets to a file for future use.

Savepackets
Note: Output can be exported to XML, PostScript®, CSV, or plain text.

Next, select a destination folder, and type the file name and click on Save.
Then select the file and click on Open.

Savename
Now you can open and analyze the saved packets anytime. To open the file, press + o
or go to File > Open from Wireshark.

The captured packets should be loaded from the file.

Openpacket

Conclusion

Wireshark supports many different communication protocols. There are many options and features that provide you the power to capture and analyze the network packets in a unique way. You can learn more about Wireshark from their official documentation.

I hope this detailed helped you to install Wireshark on Ubuntu. Please let me know your questions and suggestions.

Previous Post

Samsung Galaxy Tab S6 Lite is a beautiful Android 10 tablet that comes with an S Pen

Next Post

The 10 Best Account Takeover Prevention Tools

Related Posts

What is Remote Desktop Protocol (RDP)? Learn how to use it

January 4, 2021

Which Apps Won’t Work in iOS 13? Compatible iPhone Apps

January 3, 2021

How to Layer Audiences & Keywords to Uncover Cheaper Clicks

January 2, 2021

Background Check Services: How to Choose the Right Company?

January 2, 2021

SUSE Manager 4: Traditional server management marries DevOps

December 31, 2020

7 Best Test Management Tools

December 29, 2020
Next Post

The 10 Best Account Takeover Prevention Tools

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

No Result
View All Result

RECOMMENDEDREADS

how-to-fix-terraria-lost-connection-error
Traffic Corner

How to Fix the Terraria Lost Connection Error

by David Wilson
January 7, 2021
how-to-farm-phantom-bird-in-monster-hunter-world
Traffic Corner

How to Farm Phantom Bird in Monster Hunter World

by David Wilson
January 7, 2021
Technology

What is Remote Desktop Protocol (RDP)? Learn how to use it

by David Wilson
January 4, 2021
Smartphones

Which Apps Won’t Work in iOS 13? Compatible iPhone Apps

by David Wilson
January 3, 2021
Internet

How to Layer Audiences & Keywords to Uncover Cheaper Clicks

by David Wilson
January 2, 2021

Top Stories

how-to-fix-terraria-lost-connection-error

How to Fix the Terraria Lost Connection Error

January 7, 2021
how-to-farm-phantom-bird-in-monster-hunter-world

How to Farm Phantom Bird in Monster Hunter World

January 7, 2021

What is Remote Desktop Protocol (RDP)? Learn how to use it

January 4, 2021

Find on Categories

  • Android (2)
  • Application (1)
  • Business & Industries (1)
  • Computers & Electronics (2)
  • General (5)
  • Internet (25)
  • Internet Marketing (10)
  • Linux (15)
  • macOS (3)
  • Reviews (2)
  • Smartphones (13)
  • Technology (117)
  • Traffic Corner (7)
  • Web Development (4)
  • Website Hosts (2)
  • Windows (60)

About Us

We are a community of technology enthusiasts who believe that technology should be available to all and an effort should be made to help everyone understand it.

Contact Us at editor@searchbells.com

Connect on Social

Quick Links

  • About Us
  • Contact Us
  • Advertising
  • Privacy Policy
  • Terms Of Services
  • DMCA Policy
  • Affiliate Disclosure

© 2020 Copyright | OperateLab | All Rights Reserved By Us | Reproduction Of Contents Is Not Allowed.

No Result
View All Result
  • Home
  • Computers & Electronics
  • Technology
  • Reviews

© 2020 Copyright | OperateLab | All Rights Reserved By Us | Reproduction Of Contents Is Not Allowed.

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.Ok