hello i want to capture packets that contain this http header-> Host: mydomain.com if i use http.host display filter all data will be saved to disk and it becomes very large after few minutes is this possible ? or is there any kind of perl or python script written for this ? asked 07 Oct '14, 09:23 Damen Salvatore |
One Answer:
You should set a capture filter: So Wireshark does not capture other packets. The display filter is like the name says only for hiding packets, so if you remove the filter other packets will show up.Just a little Tutorial video about setting capture filters, click here. answered 13 Oct '14, 10:18 lal12 edited 13 Oct '14, 10:22 |