D-Link DWL-3600AP Users Manual - Page 127

Packet Capture File Download, Remote Capture Port, Use TFTP to download the, capture file, Download

Page 127 highlights

Unified Access Point Administrator's Guide Packet Capture Configuration and Settings In order to minimize performance impact on the AP while traffic capture is in progress, you should install capture filters to limit which traffic is sent to the Wireshark tool. When capturing 802.11 traffic, large portion of the captured frames tend to be beacons (typically sent every 100ms by all Access Points). Although Wireshark supports a display filter for beacon frames, it does not support a capture filter to prevent the AP from forwarding captured beacon packets to the Wireshark tool. In order to reduce performance impact of capturing the 802.11 beacons, you can disable the capture beacons mode. The remote packet capture facility is a standard feature of the Wireshark tool for Windows. Note: Remote packet capture is not standard on the Linux version of Wireshark; the Linux version doesn't work with the AP. Wireshark is an open source tool and is available for free; it can be downloaded from http:// www.wireshark.org. Table 50 describes the fields to configure the packet capture status. Field Remote Capture Port Table 50: Remote Packet Capture Description Specify the remote port to use as the destination for packet captures. (range 1 to 65530). Packet Capture File Download Packet Capture File Download allows you to download the capture file by TFTP to a configured TFTP server or by HTTP(S) to a PC. The captured packets are stored in file /tmp/apcapture.pcap on the AP. A capture is automatically stopped when the capture file download command is triggered. Because the capture file is located in the RAM file system, it disappears if the AP is reset. Table 51 describes the fields to configure the packet capture status. Field Use TFTP to download the capture file TFTP Server Filename Server IP Table 51: Packet Capture File Download Description Select or clear this option to determine whether to use TFTP or HTTP(S) to download the capture file: • To download the file by using TFTP, select this option and complete the additional fields. • To download the file by using HTTP or HTTPS, clear this option and click Download to browse to the location where the file is to be saved. When using TFTP to download the file, specify a name for the packet capture file, including the .pcap file name extension and the path to the directory where you want to save the file. When using TFTP to download the file, specify the IP address of the TFTP server. D-Link November 2011 Unified Access Point Administrator's Guide Page 127

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183

Packet Capture Configuration and Settings
D-Link
Unified Access Point Administrator’s Guide
November 2011
Page 127
Unified Access Point Administrator’s Guide
In order to minimize performance impact on the AP while traffic capture is in progress, you should install
capture filters to limit which traffic is sent to the Wireshark tool. When capturing 802.11 traffic, large portion
of the captured frames tend to be beacons (typically sent every 100ms by all Access Points). Although
Wireshark supports a display filter for beacon frames, it does not support a capture filter to prevent the AP
from forwarding captured beacon packets to the Wireshark tool. In order to reduce performance impact of
capturing the 802.11 beacons, you can disable the capture beacons mode.
The remote packet capture facility is a standard feature of the Wireshark tool for Windows.
Wireshark is an open source tool and is available for free; it can be downloaded from
http://
www.wireshark.org
.
Table 50
describes the fields to configure the packet capture status.
Packet Capture File Download
Packet Capture File Download allows you to download the capture file by TFTP to a configured TFTP server or
by HTTP(S) to a PC. The captured packets are stored in file /tmp/apcapture.pcap on the AP. A capture is
automatically stopped when the capture file download command is triggered.
Because the capture file is located in the RAM file system, it disappears if the AP is reset.
Table 51
describes the fields to configure the packet capture status.
Note:
Remote packet capture is not standard on the Linux version of Wireshark; the Linux version
doesn't work with the AP.
Table 50: Remote Packet Capture
Field
Description
Remote Capture Port
Specify the remote port to use as the destination for packet captures. (range 1
to 65530).
Table 51: Packet Capture File Download
Field
Description
Use TFTP to download the
capture file
Select or clear this option to determine whether to use TFTP or HTTP(S) to
download the capture file:
To download the file by using TFTP, select this option and complete the
additional fields.
To download the file by using HTTP or HTTPS, clear this option and click
Download
to browse to the location where the file is to be saved.
TFTP Server Filename
When using TFTP to download the file, specify a name for the packet capture
file, including the .pcap file name extension and the path to the directory
where you want to save the file.
Server IP
When using TFTP to download the file, specify the IP address of the TFTP
server.