


Important to note that tshark is sometimes used as a substitute for tcpdump. Hence, at some point in time, as a network administrator or a security engineer, you will have to use a command-line interface. The terminal version of Wireshark supports similar options and is a lot useful when a Graphical User Interface (GUI) isn’t available.Įven though a graphical user interface is, theoretically, a lot easier to use, not all environments support it, especially server environments with only command-line options. In this article, we will understand and cover a command-line interface for Wireshark, i.e., tshark.

In the earlier tutorials for Wireshark, we have covered fundamental to advanced level topics.
