WEBVTT

00:00.480 --> 00:09.870
In this video, we are going to learn how to configure and choose the correct network interface or interfaces

00:09.870 --> 00:12.320
to capture the packets.

00:12.360 --> 00:14.700
So open your Wireshark.

00:14.730 --> 00:18.390
This is the welcome window of Wireshark.

00:18.420 --> 00:23.670
It displays all the installed network interface cards.

00:23.700 --> 00:29.730
Now, this list of interfaces is going to be different for everyone.

00:29.790 --> 00:36.270
Most probably you are not going to see all these local area connections that I have here.

00:36.300 --> 00:40.860
They are not real or physical network cards.

00:40.980 --> 00:46.710
They are created by my portable modems and virtual machines.

00:46.860 --> 00:55.260
Now there are minimum to real or physical network cards on each system.

00:55.260 --> 01:04.860
Wireless card and Ethernet wireless card is represented by wi fi on Windows, and Ethernet is simply

01:04.860 --> 01:08.610
represented by Ethernet on Linux.

01:08.640 --> 01:20.020
The wireless card is represented by W LAN zero and Ethernet is represented by it o or and as a33.

01:20.040 --> 01:29.790
Now to start capturing the packets, you have to select the network interface that you are using to

01:29.820 --> 01:34.540
connect or access your network or Internet.

01:34.560 --> 01:41.670
I am connected to my network through a wireless card, so I am going to select the wi fi.

01:41.820 --> 01:46.320
As you can see, the wi fi interface has spikes, right?

01:46.350 --> 01:53.540
These spikes indicate that this interface is sending and receiving packets.

01:53.550 --> 01:54.690
It is active.

01:54.930 --> 02:00.690
We also have spikes in the adapter for loopback traffic capture.

02:00.710 --> 02:01.350
Right.

02:01.440 --> 02:04.440
Basically, this is your local host.

02:04.770 --> 02:08.340
It does not capture your network's traffic.

02:08.370 --> 02:12.960
It just monitors traffic within your own system.

02:13.260 --> 02:21.660
Again, I am connected to my network through wireless card, so I'm going to select the wi fi to start

02:21.660 --> 02:23.370
capturing the packets.

02:23.520 --> 02:31.770
So double click on wi fi or the appropriate interface that you are using to access your network.

02:31.770 --> 02:34.100
So double click on the interface.

02:34.110 --> 02:40.740
As you can see, there is Wireshark is capturing packets on wi fi right now.

02:40.800 --> 02:47.370
Wireshark allows you to capture packets on multiple interfaces as well.

02:47.370 --> 02:50.100
So let me close the current session.

02:50.100 --> 02:51.540
Click on Red Button.

02:51.540 --> 02:57.720
Now click on this close button to go back to Welcome Window, continue without saving.

02:57.750 --> 03:04.440
Now press and hold the control button, then select the interfaces.

03:04.440 --> 03:09.720
So I'm going to select wi fi and adapter for loop back capture.

03:09.720 --> 03:17.640
When you select multiple interfaces, then to start capturing the packets, you have to click on the

03:17.640 --> 03:21.810
first button in the main toolbar, click on the button.

03:21.810 --> 03:29.250
Now, as you can see, Wireshark has started to capture packets on the selected interfaces.

03:29.310 --> 03:34.470
Right now, let's clean the welcome window right here.

03:34.470 --> 03:37.800
We have a lot of unnecessary interfaces.

03:37.830 --> 03:40.770
Most of them will never be used.

03:40.980 --> 03:48.090
So to remove the interfaces on your right side, click on the down arrow.

03:48.180 --> 03:55.470
If you want to hide all the wired interfaces, then click on the wild.

03:55.470 --> 04:01.920
Now as you can see, the wired interfaces have been removed from the list, right?

04:01.920 --> 04:10.620
And this way you can remove or keep other interfaces like wireless or virtual interfaces.

04:10.650 --> 04:14.970
Just click on it to remove and display.

04:15.000 --> 04:22.710
Right now, guys, this list does not give us option to select interfaces manually.

04:22.710 --> 04:23.340
Right?

04:23.370 --> 04:31.200
I only want to keep two interfaces on my welcome window wi fi and ethernet.

04:31.200 --> 04:35.520
With this option we can either have wireless or wired.

04:35.730 --> 04:39.450
So to customize this list, go to the CAPTCHA.

04:39.480 --> 04:44.490
Click on options on your bottom right click on Manage Interfaces.

04:44.520 --> 04:48.510
Now here we have a complete list of interfaces.

04:48.510 --> 04:56.430
Here we can select the interfaces that we do not want to see on your welcome window.

04:56.430 --> 04:59.940
So I'm going to deselect all the interfaces except.

05:00.110 --> 05:01.970
Ethernet and WiFi.

05:02.360 --> 05:04.730
Now click on okay close.

05:04.760 --> 05:12.110
As you can see, guys, now we only have WiFi and Ethernet, but we have these unnecessary captions,

05:12.110 --> 05:12.510
right?

05:12.530 --> 05:16.760
Microsoft WiFi Ethernet connection 1218 Ethernet.

05:16.760 --> 05:17.240
Right.

05:17.240 --> 05:23.660
So when you customize the interfaces, it adds these unnecessary comments.

05:23.660 --> 05:31.280
So to remove unnecessary comments, again, go to the CAPTCHA options, click on manage interfaces under

05:31.280 --> 05:34.550
the comment column, double click on the interface.

05:34.550 --> 05:36.320
I'm going to click on wi fi.

05:36.350 --> 05:40.820
Now leave this field blank press enter again.

05:40.820 --> 05:44.810
I'm going to repeat the same thing for Ethernet interface.

05:44.870 --> 05:45.890
Double click on it.

05:45.920 --> 05:47.310
Leave it blank.

05:47.330 --> 05:48.410
Press enter.

05:48.410 --> 05:49.250
Click on.

05:49.250 --> 05:51.120
Okay, close.

05:51.140 --> 05:57.350
Now, as you can see, guys, we have a very neat and clean list of interfaces.
