Running Wireshark
If you try to run WireShark as a normal user, you may not be DbOH WR XsH nHWwRUN LnWHUIDFHs IRU FDSWXULng nHWwRUN WUDIfiF, due to reasons related to UNIX permissions. Run WireShark as the root ( sudo wireshark) when capturing data, and as a normal user when analysing network data. Figure 1 shows WireShark run by a user without root privileges.
Before going into more details about WireShark, I have WR WDON DbRXW nHWwRUN WUDIfiF Ln (WhHUnHW nHWwRUNs WhDW XsH WhH TCP/IP family of protocols. When we say TCP/IP, we not only mean the TCP and IP protocols, but many other protocols including ARP, BOOTP, UDP, ICMP, FTP, etc. Information is WUDnsIHUUHG XsLng SDFNHWs. (DFh SDFNHW hDs D hHDGHU DnG D bRGy part. The header part contains information that is needed by