Taping the network with wireshark

Hi,

I’m trying to catch the network flow outside my qubes os machine : I can’t find where and how to set up wireshark?

The goal : I’ve bought a used network card for a device (UPS), but it’s network traffic and it’s monitoring via its web interface seemed weird, so I unplugged it from the networfk. Now, I turned on an old linksys residential gateway, where the gateway, the qubes os and the ups are isolated.
I would like to listen to the traffic, but wireshark (in personal vm or in sys-net or in sys-firewall) cannot see the traffic (at least, I cannot understand where to look for).

Any hint would be appreciated :slight_smile:

1 Like

You need to have your analyzed device connected to the Qubes OS machine so Qubes OS will be a router for the analyzed device.
E.g.:
Router (linksys) <-Ethernet1-> Qubes OS machine <-Ethernet2-> Analyzed device
You need to have a separate network interface in Qubes OS machine for this.

1 Like

Thank you. I’ve been trying to add an ethernet interface so that i could do the job, but linking the two networks was to hard for me, so I ended “quick and dirty” : the router, the devices, another linux laptop with wireshark and a hub.

2 Likes