Monday, January 29, 2007

Installing Wireshark on OS X

Categories: Technology

I wrote a blog post awhile back on getting Ethereal setup on your computer. It used to be a very long drawn out process but things are much better now so I thought I would write up some quick directions again.

As some of you may know Ethereal has been superseded by a project called Wireshark. The new project has already been ported by the people at MacPorts (formerly DarwinPorts). The MacPorts version of Wireshark will compile itself for your specific processor so it works on PowerPC and Intel macs and doesn't require any of the hand-holding that the previous versions of Ethereal required.

To start you will want to follow the installation instructions found on the MacPorts site. I would then go and install the update to X11 that Apple recently released. It fixes some font issues that made previous versions a little wacky.

Then you will want to compile and install Wireshark by launching your Terminal application and typing in sudo port install wireshark and pressing Return. You will be prompted for your admin password and MacPorts will likely list some dependencies (other software that Wireshark needs in order to work). Just follow the prompts always saying yes to MacPorts' questions. Just as before the compile will likely take awhile. Once its done simply launch X11 from your utilities folder, type sudo /opt/local/bin/wireshark, and press Return.

Thats it. Wireshark works in basically the same way as Ethereal did so you will have very little to relearn.

Posted by Jamie at 09:00 PM

comments

Hi Jamie,
Great post, exactly what I have been looking for.  I will give it a shot later on.

Just quick sideline question with regards to using terminal and running installations such as these via terminal.  Is there anywhere you know of tutorials wise where I could find novice info on commands for terminal and these types of functions

Thanks again
Adam

Posted by AWx2D on April 19, 2007 at 05:10 AM

Hey Adam,

I wrote an introduction.  That is sadly still in progress.  I’ve only finished the first part:

Part 1

Part 2 has been in progress for quite awhile I’ve just been incredibly busy with work.  As evidenced by the fact hat I’m just now replying to you.  :)

Posted by Jamie on June 15, 2007 at 07:14 PM

make a comment

All fields are required.

Name:

Email:
Your email address will be kept private.

Webpage:

Remember personal information.

Notify me about new comments.

who is jamie?

I'm me. What more could you possibly want to know? Ok if you insist here is something:

Something about Jamie…

rss feed

Blog RSS