This is our old Q&A Site. Please post any new questions and answers at ask.wireshark.org.

Wireshark stops after capturing a few seconds using version Version 2.2.6 (v2.2.6-0-g32dac6a) - 64bits

Parameters : - OS = Windows 7 Pro, 8G RAM but had similar results on Windows 2012 with 128G of RAM ; - Network Interfaces are 10Gigs ; - Very high bandwidth environment ; - I capture only the first 68 bytes of each packet ; - splitted into many 50Megs files (usually doesnt get past 2nd one) ; - update list of packet in realtime is disabled so is autoscroll

Any ideas on how I could prevent it from crashing ?

Thank you

asked 26 May '17, 11:53

andguay's gravatar image

andguay
6112
accept rate: 0%


You might want to consider other tools to capture in such high bandwidth environments. As a first attempt have a look at dumpcap, the capture engine which Wireshark uses. Running it in a shell could help keeping the capture going. If you still are met with packet drops or other problems maybe another environment and tool may be beneficial, I'm referring to n2disk from ntop here.

permanent link

answered 26 May '17, 12:55

Jaap's gravatar image

Jaap ♦
11.7k16101
accept rate: 14%

Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here

By RSS:

Answers

Answers and Comments

Markdown Basics

  • *italic* or _italic_
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported

Question tags:

×549
×84
×57
×8

question asked: 26 May '17, 11:53

question was seen: 1,207 times

last updated: 26 May '17, 12:55

p​o​w​e​r​e​d by O​S​Q​A