Tuesday, April 12, 2011

Wireshark Source Code to help out

SVN Get the source code with SVN. Code can also be viewed online.

Resources:
Wireshark Devolpement Guide, especially read this section on Wireshark Developement
Wireshark Development Wiki
- doc/README.developer
- Wireshark User's Guide

Wireshark uses libpcap (like WinPcap) to do packet capture.

Old to-do for Wireshark (ranked in terms of easiness)
a) find where it communicates to ethernet
--1 read the section on Wireshark Developement
b) MAC addresses
--2 read how the Victor's EtherShell gets Mac address for Linux
--3 get MAC addresses in Windows and MacOS
(4) ... if I run into trouble, set up Wireshark on a vm to test it

No comments:

Post a Comment