Como configurar o intel centrino advanced-n 6205 em “monitor mode” no Windows 7 (32 bits) e no Wireshark

0

Acabei de instalar o Wireshark no meu laptop e não consigo ver que está funcionando no "modo monitor". Logicamente, não estou conectado à minha rede doméstica, preciso monitorar meu tráfego de ipads?

O WinPCAP foi instalado durante a instalação do Wireshark e eu reiniciei.

Meu dispositivo é compatível e há outras configurações que preciso definir (no Windows talvez?)

    
por Jason94 04.06.2012 / 15:54

1 resposta

2

Monitor mode is not supported by WinPcap, and thus not by Wireshark or TShark, on Windows. It is supported, for at least some interfaces, on some versions of Linux, FreeBSD, NetBSD, OpenBSD, DragonFly BSD, and Mac OS X.

If you are running Wireshark 1.4 or later on a *BSD, Linux, or Mac OS X system, and it's built with libpcap 1.0 or later, for interfaces that support monitor mode, there will be a "Monitor mode" checkbox in the Capture Options window in Wireshark, and a command line -I to dumpcap, TShark, and Wireshark.

In Wireshark (Supported OS), if the "Monitor mode" checkbox is not grayed out, check that check box to capture in monitor mode. If it is grayed out, libpcap does not think the adapter supports monitor mode. If it is not an 802.11 adapter, it cannot support monitor mode; if it is an 802.11 adapter, either the adapter does not support monitor mode, the adapter's driver does not support monitor mode, or there's a bug in libpcap causing it not to think the adapter and driver support monitor mode.

Fonte de informação

A maioria das placas não é suportada no modo monitor e no Windows

Chipsets / Cards que suportam o modo monitor ou hackear drivers que permitem O Atheros parece ser um dos favoritos nessa página para o Windows.

Esses adaptadores sem fio mais antigos são considerados alguns dos melhores , mas podem ser difícil de obter ou ter conexões de hardware legadas que o PC não suporta (ou seja, slot pcmcia).

Some wireless adapters are better suited to sniffing packets than others. Not all adapters can properly detect and report errors and others have drivers that are not very suited to packet sniffing. Cisco Aironet cards, Prism II cards, and Orinaco Silver and Gold cards are considered the best cards to perform monitoring from, but they are only a few of many that have the capability and the proper drivers available. Research which cards are available for the operating system to be used and procedures necessary for their driver install before purchasing any card.

    
por 04.06.2012 / 16:15