Wireshark 3.6 Network Analyzer Release

Mushure megore rekusimudzira, bazi idzva rakagadzikana reWireshark 3.6 network analyzer rakaburitswa. Ngatiyeukei kuti purojekiti yakatanga kugadzirwa pasi pezita rokuti Ethereal, asi muna 2006, nekuda kwekukakavadzana nemuridzi weEthereal trademark, vagadziri vakamanikidzwa kutumidzazve chirongwa Wireshark. Iyo kodhi yeprojekiti yakagoverwa pasi peGPLv2 rezinesi.

Makiyi ekuvandudza muWireshark 3.6.0:

  • Shanduko dzakaitwa kune syntax yemitemo yekusefa traffic:
    • Yakawedzerwa rutsigiro rwe syntax "a ~= b" kana "a any_ne b" kusarudza chero kukosha kunze kweimwe.
    • Yakawedzera tsigiro ye "a not in b" syntax, yakafanana mukuita ne "kwete mu b".
    • Inotenderwa kutsanangura tambo nekuenzanisa netambo dzakasvibirira muPython, pasina chikonzero chekutiza mavara akakosha.
    • Izwi rekuti "a != b" rave rakafanana nerekuti "!(a == b)" kana richishandiswa neukoshi hunotora nzvimbo dzakawanda ("ip.addr != 1.1.1.1" rave zvimwe chete tichitsanangura "ip.src != 1.1.1.1. 1.1.1.1 uye ip.dst != XNUMX").
    • Maeleti ezvinyorwa zvinofanirwa kupatsanurwa chete nema koma, kuganhura nenzvimbo hazvibvumidzwe (kureva mutemo 'http.request.method mu{"GET" "HEAD"}' unofanira kutsiviwa ne 'http.request.method mu {" WANA", "MUSO"}'.
  • Kune TCP traffic, tcp.completeness filter yakawedzerwa, iyo inokubvumira kuti uparadzanise TCP nzizi zvichienderana nehurumende yebasa rekubatanidza, i.e. Iwe unogona kuona TCP inoyerera iyo mapaketi akatsinhaniswa kuti amise, kuendesa data, kana kumisa kubatana.
  • Yakawedzera iyo "add_default_value" kurongedza, kuburikidza iyo iwe yaunokwanisa kudoma default tsika dzeProtobuf minda isina serialized kana kusvetuka kana uchibata traffic.
  • Yakawedzerwa rutsigiro rwekuverenga mafaera ane yakabatwa traffic muETW (Chiitiko Chekutsvaga Windows) fomati. A dissector module yakawedzerwawo DLT_ETW mapakeji.
  • Yakawedzerwa "Tevera DCCP rwizi" modhi, ichikubvumira kusefa uye kubvisa zvirimo kubva kuDCCP nzizi.
  • Yakawedzera tsigiro yekuparura maRTP mapaketi aneodhiyo data muOPUS fomati.
  • Zvinogoneka kuunza mapaketi akabatiswa kubva mukuraswa kwemavara kupinda mune libpcap fomati nekuseta mitemo yekupatsanura zvichienderana nemataurirwo enguva dzose.
  • Iyo RTP stream player (Telephony> RTP> RTP Player) yakagadziridzwa zvakanyanya, iyo inogona kushandiswa kuridza VoIP mafoni. Kuwedzera kutsigirwa kwezvinyorwa zvekutamba, kuwedzera kudavirwa kweiyo interface, zvakapa kugona kunyararidza ruzha uye kuchinja machanera, yakawedzera sarudzo yekuchengetedza ruzha rwakaridzwa muchimiro chemulti-channel .au kana .wav mafaera.
  • Dialogs dzine chekuita neVoIP dzakagadziridzwa patsva (VoIP Calls, RTP Streams, RTP Analysis, RTP Player uye SIP Flows), izvo zvino zvisiri modal uye zvinogona kuvhurwa kumashure.
  • Iko kugona kuteedzera SIP mafoni zvichienderana neiyo Call-ID kukosha kwakawedzerwa kune "Tevedzera Kuyerera" dialog. Yakawedzera ruzivo mukubuda kweYAML.
  • Iko kugona kuunganidzazve zvimedu zveIP mapaketi ane akasiyana maVLAN ID akaitwa.
  • Yakawedzera mubati wekuvaka patsva USB (USB Link Layer) mapaketi akabatwa achishandisa hardware analyzer.
  • Yakawedzerwa "--export-tls-session-kiyi" sarudzo kuTShark kutumira makiyi echikamu cheTLS.
  • Iyo dialog yekutumira kunze muCSV fomati yakashandurwa muRTP stream analyzer
  • Kuumbwa kwemapakeji eMacOS-based masisitimu akashongedzerwa neApple M1 ARM chip kwatanga. Mapakeji eApple zvishandiso ane Intel machipisi akawedzera zvinodikanwa zveiyo macOS vhezheni (10.13+). Yakawedzerwa inotakurika 64-bit mapakeji eWindows (PortableApps). Yakawedzera rutsigiro rwekutanga kuvaka Wireshark yeWindows uchishandisa GCC uye MinGW-w64.
  • Yakawedzera rutsigiro rwekudhikodha uye kutora data muBLF (Informatik Binary Log File) fomati.
  • Yakawedzerwa protocol rutsigiro:
    • Bluetooth Link Manager Protocol (BT LMP),
    • Bundle Protocol vhezheni 7 (BPv7),
    • Bundle Protocol vhezheni 7 Chengetedzo (BPSec),
    • CBOR Chinhu Kusaina uye Encryption (COSE),
    • E2 Application Protocol (E2AP),
    • Chiitiko Kutsvaga kweWindows (ETW),
    • Yakanyanya yakawedzera Eth Musoro (EXEH),
    • Yepamusoro-Kuita Kubatanidza Tracer (HiPerConTracer),
    • ISO 10681,
    • Kerberos TAURA,
    • linux psample protocol,
    • Local Interconnect Network (LIN),
    • Microsoft Task Scheduler Service,
    • O-RAN E2AP,
    • O-RAN fronthaul UC-ndege (O-RAN),
    • Opus Interactive Audio Codec (OPUS),
    • Transport Protocol PDU, R09.x (R09),
    • RDP Dynamic Channel Protocol (DRDYNVC),
    • RDP Graphic pombi chiteshi Protocol (EGFX),
    • RDP Multi-transport (RDPMT),
    • Real-Nguva Publish-Subscribe Virtual Transport (RTPS-VT),
    • Real-Nguva Publish-Subscribe Wire Protocol (yakagadziriswa) (RTPS-PROC),
    • Shared Memory Communications (SMC),
    • Chiratidzo PDU, SparkplugB,
    • State Synchronization Protocol (SSyncP),
    • Tagged Image File Format (TIFF),
    • TP-Link Smart Home Protocol,
    • UAVCAN DDL
    • UAVCAN / CAN,
    • UDP Remote Desktop Protocol (RDPUDP),
    • Van Jacobson PPP compression (VJC),
    • World of Warcraft World (WOW),
    • X2 xIRI payload (xIRI).

Source: opennet.ru

Voeg