Solved

Wireshark question

Posted on 2017-04-19
1
53 Views
Last Modified: 2017-04-20
Im new to Wireshark. On my server im able to get on the network but unable to browse the internet. Our network team has verified 2 way communication with the websites, such as yahoo and msn when I try to reach them.

It seems something is blocking at server. The firewall is off and im able to telnet port 80. So I want to do a capture of internet traffic using only port 80. Can someone provide step by step instructions for this?
0
Comment
Question by:Thomas N
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 6

Accepted Solution

by:
Elango Sathyadev earned 500 total points
ID: 42099853
Best way is to use Wireshark. So first install wireshark.  Can use a potable version if you want.

Wireshark can be downloaded from

https://www.wireshark.org/download.html

Make sure Winpcap is installed with it. With Winpcap, wireshark cannot capture packets.

Once installed, server must be restarted.

Once you restart, start up WireShark

Method 1: Enter port 80 or port http in capture filter and select the interface to start capturing.

Method 2: For more detailed analysis capture everything and filter the traffic. Leave capture filter empty and start capture by selecting the interface. Then you should be able to see traffic flowing. on the top, there should be display filter, try entering as tcp.port eq 80. This will filter HTTP Traffic.

More display filters are available in the Wiki Page https://wiki.wireshark.org/DisplayFilters
0

Featured Post

Save the day with this special offer from ATEN!

Save 30% on the CV211 using promo code EXPERTS30 now through April 30th. The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When you try to share a printer , you may receive one of the following error messages. Error message when you use the Add Printer Wizard to share a printer: Windows could not share your printer. Operation could not be completed (Error 0x000006…
During and after that shift to cloud, one area that still poses a struggle for many organizations is what to do with their department file shares.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Monitoring a network: why having a policy is the best policy? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the enormous benefits of having a policy-based approach when monitoring medium and large networks. Software utilized in this v…
Suggested Courses

695 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question