wireshark-dev October 2010 archive
Main Archive Page > Month Archives  > wireshark-dev archives
wireshark-dev: Re: [Wireshark-dev] wireless nic is not showing i

Re: [Wireshark-dev] wireless nic is not showing in wireshark

From: Tyson Key <tyson.key_at_nospam>
Date: Sat Oct 02 2010 - 19:55:00 GMT
To: Developer support list for Wireshark <wireshark-dev@wireshark.org>

Hi Nikhil,

Under Windows 7, the 802.11 interface is simply named "Microsoft" for some
unfathomable reason.

Unfortunately, because WinPCap (and by extension Wireshark) does not utilise
the new APIs/mechanisms for capturing raw 802.11 frames that are provided by
NDIS 6, you'll only see synthetic Ethernet frames if you capture in "Local
Mode"/Station Mode.

However, it is possible to use Microsoft's Network Monitor 3.4 to capture
802.11 frames (with a poorly-designed, proprietary pseudo-header, of course)
to a file that can be read by recent versions of Wireshark; in either Local
Mode or Monitor Mode - providing that you're willing to accept various
caveats:

   - 802.1X frames from Ad-Hoc networks are seemingly ignored/dropped -
   although other data and management frames are captured
   - Wireshark cannot currently handle "type 7"/Raw IPv6 frames in NetMon
   capture files - so some frames may appear to be missing, or your file might
   not load as you'd expect
   - The capture engine and pseudo-header have a habit of causing management
   frames to be corrupted or treated as Malformed packets within Wireshark (and
   I've encountered Beacon frames that have invalid TLV data blobs attached to
   them post-capture, which were never generated or transmitted)

I hope that helps,

Tyson.

On 2 October 2010 03:20, Nikil Roy <nikhilroy62@gmail.com> wrote:

> hi
>
> am nikhil, i have an issue with wireshark. am using windows 7 home premium,
> the other i have installed wireshark and when i started to capture its only
> showing the Fast Ethernet NIC Wat's the problem. is it the problem with my
> laptop or something else? I hope i may get a reply soon.
>
> thank you
> Nikhil
>
> --
>
> (¨`·.·´¨) Always
> `·.¸(¨`·.·´¨) Keep
> (¨`·.·´¨)¸.·´ Smiling!
> `·.¸.·´ With prayer and love
> Nikhil Roy, Muvattupuzha
> nihkilroy62@gmail.com
> mob:09025523721
> http://www.nikhilroy.110mb.com
>
>
> ___________________________________________________________________________
> Sent via: Wireshark-dev mailing list <wireshark-dev@wireshark.org>
> Archives: http://www.wireshark.org/lists/wireshark-dev
> Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
> mailto:wireshark-dev-request@wireshark.org?subject=unsubscribe
>

-- Fight Internet Censorship! http://www.eff.org http://vmlemon.wordpress.com | Twitter/FriendFeed/Skype: vmlemon | 00447934365844

___________________________________________________________________________
Sent via: Wireshark-dev mailing list <wireshark-dev@wireshark.org>
Archives: http://www.wireshark.org/lists/wireshark-dev
Unsubscribe: https://wireshark.org/mailman/options/wireshark-dev
             mailto:wireshark-dev-request@wireshark.org?subject=unsubscribe