• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 302
  • Last Modified:

Promicuous driver

I have a laptop with 1 Cisco PCI Wireless LAN Adapter and 1 integrated Intel Pro LAN adapter. How do I find out if the drivers of my LAN cards support promicuous option? The reason I ask is because when I setup the promicuous mode with Wireshark to monitor the traffic via my wireless LAN, it did not capture anything.
0
netdoc01
Asked:
netdoc01
  • 3
  • 2
  • 2
  • +1
5 Solutions
 
Don JohnstonInstructorCommented:
Try opening a web browser on your PC (that has the protocol analyzer) while capturing data and see if that gets captured.
0
 
Collective_SupportCommented:
Make sure that any protocol filters in Wireshark are set to "IP" and not just udp or something else. Also if your sniffing a mirrored port, be sure and put a static address on your nic in the vlan that you're trying to capture.

I hope this helps!
0
 
netdoc01Author Commented:
2 questions:
1. How do I find out if the drivers of my LAN cards support the promicuous option.
2. I am sniffing with Wireshark on my laptop via my wireless card and it did not capture any data when the promucuous option is checked. Why?

Thanks
0
What Security Threats Are We Predicting for 2018?

Cryptocurrency, IoT botnets, MFA, and more! Hackers are already planning their next big attacks for 2018. Learn what you might face, and how to defend against it with our 2018 security predictions.

 
Kamran ArshadCommented:
Hi,

When you Install Wireshark, it installs the WinPCAP library which actually turns the NIC into Promicious mode. Check if WinPCAP is properly Installed or not. Usually un-installing and then installing both Wireshark and WinPCAP again works and btw you can use Kismet for Wireless.

www.kismetwireless.net/
0
 
netdoc01Author Commented:
But how do I check if my LAN drivers for my LAN cards has promicuous option enabled? Thx
0
 
Kamran ArshadCommented:
I don't know about any utility that can check the NIC for promicuous mode but when you start sniffing through wireshark in a hub based environment or in a switched network where Port-Mirroring is 'ON' you will get packets of whole network.
0
 
Collective_SupportCommented:
installing wireshark and all of its required components is all you need to do. Now you must select which nic you want to use for the sniffing session in wireshark. You could always disable one nic, select the active one in wireshark then fire up an IM client or something to generate traffic. You should see atleast that traffic in the capture file. There is nothing you need to change on the nic for promiscuous mode.

hope this helps!
0
 
netdoc01Author Commented:
I enabled promicuous mode in Wireshark but it did not capture anything. It worked when I unchecked it. I am using my wireless NIC card.
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

  • 3
  • 2
  • 2
  • +1
Tackle projects and never again get stuck behind a technical roadblock.
Join Now