Interface | Select the interface to sniff from the dropdown menu. You must select one interface. You cannot change the interface without deleting the filter and creating a new one, unlike the other fields. |
Max Packets to Capture | Enter the number of packets to capture before the filter stops. This number cannot be zero. You can halt the capturing before this number is reached. |
Enable Filters | Select this option to specify your filter fields |
Host(s) | Enter one or more hosts IP address Separate multiple hosts with commas. Enter a range using a dash without spaces, for example 172.16.1.5-172.16.1.15 or enter a subnet. |
Port(s) | Enter one or more ports to capture on the selected interface. Separate multiple ports with commas. Enter a range using a dash without spaces, for example 88-90 |
VLAN(s) | Enter one or more vlans (if there is any). Separate multiple vlans with commas. |
Protocol | Enter one or more protocol. Separate multiple protocol with commas. Enter a range using a dash without spaces, for example 1-6, 17, 21-25 |
Include IPv6 packets | Select this option if you are troubleshooting IPv6 networking, or if your network uses IPv6. Otherwise, leave it disabled. |
Capture Non-IP packets | The protocols available in the list are all IP based except for ICMP (ping). To capture non-IP based packets select this feature. Some examples of non-IP packets include IPsec, IGMP, ARP, and as mentioned ICMP. |