This is a static archive of our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Using Wireshark to help Create Firewall Rules - Best Filter

0

Good Morning,

First I apologize if this is like the most asked question and I failed to find it in my searching.

I'm currently doing a review of an environment to put more stringent firewall rules in place. Doing a normal Wireshark pull of traffic to a box and dumping out to text I get a lot more information then what I really am needing.

What I would like to do is just record Source Server, Destination Server and the port used for the communication.

What is the best way to complete that.

My assumption being I can then Dump to text via File > Export > File selecting CS as my save type. Pull that into excel, remove duplicates and have a pretty good communication list of UDP/TCP IP ports being used.

Thank you!

asked 02 Dec '16, 08:37

Mike%20W's gravatar image

Mike W
6113
accept rate: 0%

edited 02 Dec '16, 08:41