[Recommended] Install Wireshark w/ OpenFlow support

Latest Wireshark (1.12.x) has OpenFlow dissectors:

However this is not the default wireshark in Ubuntu 14.04 that you get with apt-get install wireshark.

To install the latest do (based on [ this page]) :

sudo apt-get install -y software-properties-common python-software-properties

sudo add-apt-repository ppa:pi-rho/security 

sudo apt-get update

 sudo apt-get install wireshark 

#To avoid the pop-up dialogue you can use
sudo DEBIAN_FRONTEND=noninteractive apt-get -y -q install wireshark

To be on the safe side you can remove the repository that was added so that it is not part of of the apt-get update and upgrade

sudo add-apt-repository --remove ppa:pi-rho/security 

Allow to capture interfaces when run as non super users (without sudo)

sudo setcap 'CAP_NET_RAW+eip CAP_NET_ADMIN+eip' /usr/bin/dumpcap

[Depricated] Install OpenFlow Dissector for WireShark

These instructions are tested on the standard Ubuntu 12.04 image of InstaGENI racks

Install necessary Packages

sudo apt-get update;
sudo apt-get install wireshark glib-2.0 gtk+-2.0 libgtk2.0-dev scons

Download Source Files

Download wireshark source:

tar xvfj wireshark_1.6.7.orig.tar.bz2 

Download OpenFlow dissector source:

tar xvfz pre-ws-1.10.0.tar.gz 

Configure Wireshark

cd wireshark-1.6.7/;
export WIRESHARK=~/wireshark-1.6.7/

Install Dissector

cd ~/barnstorm-of-dissector-85564cc537d4/
cd src/
scons install

This will install the plugin at ~/.wireshark/plugins/

If you want to install the plugin for all users move it to the global plugin place:

sudo mv ~/.wireshark/plugins/ /usr/lib/wireshark/libwireshark1/plugins/

Verify Installation

WireShark is a graphical tool, in order to run it from a remote host you need to enable X11 Forwarding. On a Linux-friendly machine when you ssh to the remote host add the -X flag.

To verify installation:

  1. Run wireshark
  2. Open the "Help" --> "About" menu
  3. Select the "Plugins" tab
  4. Click the "Name" header to the plugins by name
  5. Verify that "" appears in the list.
Last modified 7 years ago Last modified on 08/04/15 12:46:22