<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Mnairis</id>
	<title>ICO wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Mnairis"/>
	<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php/Special:Contributions/Mnairis"/>
	<updated>2026-05-08T02:03:19Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.45.1</generator>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45413</id>
		<title>PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45413"/>
		<updated>2012-01-07T14:28:21Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;source lang=&amp;quot;powershell&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;#&lt;br /&gt;
.SYNOPSIS&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.&lt;br /&gt;
    Katsetatud Windows Server 2008 R2 peal, mille test-domeeni kliendiks Windows 7 proffessional (MSDNA).&lt;br /&gt;
    Kasutatud just Windows serveritele mõeldud AD moodulit, mis imporditakse.&lt;br /&gt;
&lt;br /&gt;
.DESCRIPTION&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni parameetriga määratud stringi sisaldava nimega.&lt;br /&gt;
    Algselt püüdsin teha asja WMI objekti kasutades ent siis selgus, et Get-WmiObject -Class &#039;Win32_Product&#039; -computerName $computer ei näita kõiki installitud programme vaid ainult msi installitud asju.&lt;br /&gt;
    Seepärast on kasutatud registritest lugemist.&lt;br /&gt;
&lt;br /&gt;
    Autor: Margus Nairis AK41&lt;br /&gt;
    &lt;br /&gt;
.NOTES&lt;br /&gt;
    Autor : Margus NAiris AK41&lt;br /&gt;
    &lt;br /&gt;
.LINK&lt;br /&gt;
&lt;br /&gt;
    http://itcollege.ee/~mnairis&lt;br /&gt;
    &lt;br /&gt;
.EXAMPLE&lt;br /&gt;
    &lt;br /&gt;
    Kasutades ilma parameetrita otsib AD masinate seast installitud programme ja &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab stringi &#039;torrent&#039;.&lt;br /&gt;
    PS&amp;gt; ADComputers_4.ps&lt;br /&gt;
    &lt;br /&gt;
    Kasutades parameetriga FindString otsib AD masinate seast installitud programme ja &lt;br /&gt;
    &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab parameetris kasutatud stringi.&lt;br /&gt;
    Järgnevad kaks näidet leiavad näiteks Oracle Virtual Boxi masinatest.&lt;br /&gt;
    &lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 rtu&lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 -FindString rtu&lt;br /&gt;
    &lt;br /&gt;
.PARAMETER FindString&lt;br /&gt;
&lt;br /&gt;
    Peab olema string tüüpi, mitte kohustuslik (vaikimisi on siis &#039;torrent&#039;)&lt;br /&gt;
    &lt;br /&gt;
#&amp;gt;&lt;br /&gt;
&lt;br /&gt;
param (&lt;br /&gt;
[Parameter(Position=0, Mandatory=$false)]&lt;br /&gt;
[string] $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
&lt;br /&gt;
#### See tingimus muutub mõtetuks, sest parameetris juba määratud vaikimisi väärtus.&lt;br /&gt;
#if($FindString -eq $null){&lt;br /&gt;
#    $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
#}&lt;br /&gt;
&lt;br /&gt;
# impordin ActiveDirectory Mooduli Serveri jaoks.&lt;br /&gt;
 Import-Module ActiveDirectory&lt;br /&gt;
 &lt;br /&gt;
$computers = Get-ADComputer -Filter * &lt;br /&gt;
$kogus = $computers.Length&lt;br /&gt;
$otsitav = $FindString&lt;br /&gt;
$loendur = 0&lt;br /&gt;
$compuArray = @()&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsin installitud programme ja &#039;&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host &amp;quot; vilistan &amp;quot; -NoNewline -ForegroundColor red -BackgroundColor yellow; &lt;br /&gt;
Write-Host &amp;quot;&#039; kui leian otsitavat stringi (&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host $otsitav.ToLower() -ForegroundColor Yellow -NoNewline;&lt;br /&gt;
Write-Host &amp;quot;) sisaldava programmi.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;ActiveDirectorys: &amp;quot; $kogus &amp;quot;masinat.&amp;quot; -ForegroundColor Yellow &lt;br /&gt;
Write-Host &amp;quot;Ole kannatlik, kuniks kõik masinad on läbi käidud.&amp;quot; -ForegroundColor Yellow&lt;br /&gt;
&lt;br /&gt;
# määran registri peaharu &lt;br /&gt;
$Branch=&#039;LocalMachine&#039; &lt;br /&gt;
&lt;br /&gt;
# määran registri alamharu&lt;br /&gt;
$SubBranch=&amp;quot;SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall&amp;quot;&lt;br /&gt;
&lt;br /&gt;
FOREACH ($pc in $computers) &lt;br /&gt;
{ &lt;br /&gt;
    write-host&lt;br /&gt;
    write-host $kogus&lt;br /&gt;
    write-host &amp;quot;Masin: &amp;quot; $pc.Name&lt;br /&gt;
    &lt;br /&gt;
    try{&lt;br /&gt;
    $registry=[microsoft.win32.registrykey]::OpenRemoteBaseKey(&#039;LocalMachine&#039;,$pc.Name) &lt;br /&gt;
    }catch{}&lt;br /&gt;
    $registrykey=$registry.OpenSubKey($Subbranch) &lt;br /&gt;
    $SubKeys=$registrykey.GetSubKeyNames() &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
    Foreach ($key in $subkeys) &lt;br /&gt;
    { &lt;br /&gt;
        $exactkey=$key &lt;br /&gt;
        $NewSubKey=$SubBranch+&amp;quot;\\&amp;quot;+$exactkey &lt;br /&gt;
        $ReadUninstall=$registry.OpenSubKey($NewSubKey) &lt;br /&gt;
        $Value=$ReadUninstall.GetValue(&amp;quot;DisplayName&amp;quot;) &lt;br /&gt;
        &lt;br /&gt;
        if($Value -ne $null){&lt;br /&gt;
             if( !$Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                Write-Host &amp;quot;Installitud: &amp;quot; $Value&lt;br /&gt;
                }&lt;br /&gt;
             &lt;br /&gt;
             if( $Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                  #Write-Host $pc.Name &amp;quot;Sisaldab installitud programmide hulgas otsitava stringiga ($otsitav) programmi!&amp;quot; -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  Write-Host &amp;quot;Leitud Sobivus : &amp;quot; -NoNewline; Write-Host $Value -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  $loendur ++&lt;br /&gt;
                  if( $compuArray -notContains $pc.Name ){&lt;br /&gt;
                        $compuArray += $pc.Name&lt;br /&gt;
                    }&lt;br /&gt;
                }&lt;br /&gt;
        }&lt;br /&gt;
&lt;br /&gt;
    } &lt;br /&gt;
    $kogus --&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsimine lõpetatud, leitud $loendur sobivust järgmistes masinates:&amp;quot; -ForegroundColor yellow&lt;br /&gt;
foreach($compu in $compuArray){&lt;br /&gt;
    Write-Host $compu -ForegroundColor red&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
exit&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45412</id>
		<title>PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45412"/>
		<updated>2012-01-07T14:25:27Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;source lang=&amp;quot;powershell&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;#&lt;br /&gt;
.SYNOPSIS&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.&lt;br /&gt;
&lt;br /&gt;
.DESCRIPTION&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni parameetriga määratud stringi sisaldava nimega.&lt;br /&gt;
    Algselt püüdsin teha asja WMI objekti kasutades ent siis selgus, et Get-WmiObject -Class &#039;Win32_Product&#039; -computerName $computer ei näita kõiki installitud programme vaid ainult msi installitud asju.&lt;br /&gt;
    Seepärast on kasutatud registritest lugemist.&lt;br /&gt;
&lt;br /&gt;
    Autor: Margus Nairis AK41&lt;br /&gt;
    &lt;br /&gt;
.NOTES&lt;br /&gt;
    Autor : Margus NAiris AK41&lt;br /&gt;
    &lt;br /&gt;
.LINK&lt;br /&gt;
&lt;br /&gt;
    http://itcollege.ee/~mnairis&lt;br /&gt;
    &lt;br /&gt;
.EXAMPLE&lt;br /&gt;
    &lt;br /&gt;
    Kasutades ilma parameetrita otsib AD masinate seast installitud programme ja &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab stringi &#039;torrent&#039;.&lt;br /&gt;
    PS&amp;gt; ADComputers_4.ps&lt;br /&gt;
    &lt;br /&gt;
    Kasutades parameetriga FindString otsib AD masinate seast installitud programme ja &lt;br /&gt;
    &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab parameetris kasutatud stringi.&lt;br /&gt;
    Järgnevad kaks näidet leiavad näiteks Oracle Virtual Boxi masinatest.&lt;br /&gt;
    &lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 rtu&lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 -FindString rtu&lt;br /&gt;
    &lt;br /&gt;
.PARAMETER FindString&lt;br /&gt;
&lt;br /&gt;
    Peab olema string tüüpi, mitte kohustuslik (vaikimisi on siis &#039;torrent&#039;)&lt;br /&gt;
    &lt;br /&gt;
#&amp;gt;&lt;br /&gt;
&lt;br /&gt;
param (&lt;br /&gt;
[Parameter(Position=0, Mandatory=$false)]&lt;br /&gt;
[string] $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
&lt;br /&gt;
#### See tingimus muutub mõtetuks, sest parameetris juba määratud vaikimisi väärtus.&lt;br /&gt;
#if($FindString -eq $null){&lt;br /&gt;
#    $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
#}&lt;br /&gt;
&lt;br /&gt;
# impordin ActiveDirectory Mooduli Serveri jaoks.&lt;br /&gt;
 Import-Module ActiveDirectory&lt;br /&gt;
 &lt;br /&gt;
$computers = Get-ADComputer -Filter * &lt;br /&gt;
$kogus = $computers.Length&lt;br /&gt;
$otsitav = $FindString&lt;br /&gt;
$loendur = 0&lt;br /&gt;
$compuArray = @()&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsin installitud programme ja &#039;&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host &amp;quot; vilistan &amp;quot; -NoNewline -ForegroundColor red -BackgroundColor yellow; &lt;br /&gt;
Write-Host &amp;quot;&#039; kui leian otsitavat stringi (&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host $otsitav.ToLower() -ForegroundColor Yellow -NoNewline;&lt;br /&gt;
Write-Host &amp;quot;) sisaldava programmi.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;ActiveDirectorys: &amp;quot; $kogus &amp;quot;masinat.&amp;quot; -ForegroundColor Yellow &lt;br /&gt;
Write-Host &amp;quot;Ole kannatlik, kuniks kõik masinad on läbi käidud.&amp;quot; -ForegroundColor Yellow&lt;br /&gt;
&lt;br /&gt;
# määran registri peaharu &lt;br /&gt;
$Branch=&#039;LocalMachine&#039; &lt;br /&gt;
&lt;br /&gt;
# määran registri alamharu&lt;br /&gt;
$SubBranch=&amp;quot;SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall&amp;quot;&lt;br /&gt;
&lt;br /&gt;
FOREACH ($pc in $computers) &lt;br /&gt;
{ &lt;br /&gt;
    write-host&lt;br /&gt;
    write-host $kogus&lt;br /&gt;
    write-host &amp;quot;Masin: &amp;quot; $pc.Name&lt;br /&gt;
    &lt;br /&gt;
    try{&lt;br /&gt;
    $registry=[microsoft.win32.registrykey]::OpenRemoteBaseKey(&#039;LocalMachine&#039;,$pc.Name) &lt;br /&gt;
    }catch{}&lt;br /&gt;
    $registrykey=$registry.OpenSubKey($Subbranch) &lt;br /&gt;
    $SubKeys=$registrykey.GetSubKeyNames() &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
    Foreach ($key in $subkeys) &lt;br /&gt;
    { &lt;br /&gt;
        $exactkey=$key &lt;br /&gt;
        $NewSubKey=$SubBranch+&amp;quot;\\&amp;quot;+$exactkey &lt;br /&gt;
        $ReadUninstall=$registry.OpenSubKey($NewSubKey) &lt;br /&gt;
        $Value=$ReadUninstall.GetValue(&amp;quot;DisplayName&amp;quot;) &lt;br /&gt;
        &lt;br /&gt;
        if($Value -ne $null){&lt;br /&gt;
             if( !$Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                Write-Host &amp;quot;Installitud: &amp;quot; $Value&lt;br /&gt;
                }&lt;br /&gt;
             &lt;br /&gt;
             if( $Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                  #Write-Host $pc.Name &amp;quot;Sisaldab installitud programmide hulgas otsitava stringiga ($otsitav) programmi!&amp;quot; -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  Write-Host &amp;quot;Leitud Sobivus : &amp;quot; -NoNewline; Write-Host $Value -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  $loendur ++&lt;br /&gt;
                  if( $compuArray -notContains $pc.Name ){&lt;br /&gt;
                        $compuArray += $pc.Name&lt;br /&gt;
                    }&lt;br /&gt;
                }&lt;br /&gt;
        }&lt;br /&gt;
&lt;br /&gt;
    } &lt;br /&gt;
    $kogus --&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsimine lõpetatud, leitud $loendur sobivust järgmistes masinates:&amp;quot; -ForegroundColor yellow&lt;br /&gt;
foreach($compu in $compuArray){&lt;br /&gt;
    Write-Host $compu -ForegroundColor red&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
exit&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45411</id>
		<title>PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45411"/>
		<updated>2012-01-07T14:24:31Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;source lang=&amp;quot;powershell&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;#&lt;br /&gt;
.SYNOPSIS&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.&lt;br /&gt;
&lt;br /&gt;
.DESCRIPTION&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni parameetriga määratud stringi sisaldava nimega.&lt;br /&gt;
    Algselt püüdsin teha asja WMI objekti kasutades ent siis selgus, et Get-WmiObject -Class &#039;Win32_Product&#039; -computerName $computer ei näita kõiki installitud programme vaid ainult msi installitud asju.&lt;br /&gt;
    Seepärast on kasutatud registritest lugemist.&lt;br /&gt;
&lt;br /&gt;
    Autor: Margus Nairis AK41&lt;br /&gt;
    &lt;br /&gt;
.NOTES&lt;br /&gt;
    Autor : Margus NAiris AK41&lt;br /&gt;
    &lt;br /&gt;
.LINK&lt;br /&gt;
&lt;br /&gt;
    http://itcollege.ee/~mnairis&lt;br /&gt;
    &lt;br /&gt;
.EXAMPLE&lt;br /&gt;
    &lt;br /&gt;
    Kasutades ilma parameetrita otsib AD masinate seast installitud programme ja &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab stringi &#039;torrent&#039;.&lt;br /&gt;
    PS&amp;gt; ADComputers_4.ps&lt;br /&gt;
    &lt;br /&gt;
    Kasutades parameetriga FindString otsib AD masinate seast installitud programme ja &lt;br /&gt;
    &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab parameetris kasutatud stringi.&lt;br /&gt;
    Järgnevad kaks näidet leiavad näiteks Oracle Virtual Boxi masinatest.&lt;br /&gt;
    &lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 rtu&lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 -FindString rtu&lt;br /&gt;
    &lt;br /&gt;
.PARAMETER FindString&lt;br /&gt;
&lt;br /&gt;
    Peab olema string tüüpi, mitte kohustuslik (vaikimisi on siis &#039;torrent&#039;)&lt;br /&gt;
    &lt;br /&gt;
#&amp;gt;&lt;br /&gt;
&lt;br /&gt;
param (&lt;br /&gt;
[Parameter(Position=0, Mandatory=$false)]&lt;br /&gt;
[string] $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
&lt;br /&gt;
#### See tingimus muutub mõtetuks, sest parameetris juba määratud vaikimisi väärtus.&lt;br /&gt;
#if($FindString -eq $null){&lt;br /&gt;
#    $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
#}&lt;br /&gt;
&lt;br /&gt;
# impordin ActiveDirectory Mooduli Serveri jaoks.&lt;br /&gt;
 Import-Module ActiveDirectory&lt;br /&gt;
 &lt;br /&gt;
$computers = Get-ADComputer -Filter * &lt;br /&gt;
$kogus = $computers.Length&lt;br /&gt;
$otsitav = $FindString&lt;br /&gt;
$loendur = 0&lt;br /&gt;
$compuArray = @()&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsin installitud programme ja &#039;&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host &amp;quot; vilistan &amp;quot; -NoNewline -ForegroundColor red -BackgroundColor yellow; &lt;br /&gt;
Write-Host &amp;quot;&#039; kui leian otsitavat stringi (&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host $otsitav.ToLower() -ForegroundColor Yellow -NoNewline;&lt;br /&gt;
Write-Host &amp;quot;) sisaldava programmi.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;ActiveDirectorys: &amp;quot; $kogus &amp;quot;masinat.&amp;quot; -ForegroundColor Yellow &lt;br /&gt;
Write-Host &amp;quot;Ole kannatlik, kuniks kõik masinad on läbi käidud.&amp;quot; -ForegroundColor Yellow&lt;br /&gt;
&lt;br /&gt;
# määran registri haru &lt;br /&gt;
$Branch=&#039;LocalMachine&#039; &lt;br /&gt;
&lt;br /&gt;
# määran registri alamharu&lt;br /&gt;
$SubBranch=&amp;quot;SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall&amp;quot;&lt;br /&gt;
&lt;br /&gt;
FOREACH ($pc in $computers) &lt;br /&gt;
{ &lt;br /&gt;
    write-host&lt;br /&gt;
    write-host $kogus&lt;br /&gt;
    write-host &amp;quot;Masin: &amp;quot; $pc.Name&lt;br /&gt;
    &lt;br /&gt;
    try{&lt;br /&gt;
    $registry=[microsoft.win32.registrykey]::OpenRemoteBaseKey(&#039;LocalMachine&#039;,$pc.Name) &lt;br /&gt;
    }catch{}&lt;br /&gt;
    $registrykey=$registry.OpenSubKey($Subbranch) &lt;br /&gt;
    $SubKeys=$registrykey.GetSubKeyNames() &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
    Foreach ($key in $subkeys) &lt;br /&gt;
    { &lt;br /&gt;
        $exactkey=$key &lt;br /&gt;
        $NewSubKey=$SubBranch+&amp;quot;\\&amp;quot;+$exactkey &lt;br /&gt;
        $ReadUninstall=$registry.OpenSubKey($NewSubKey) &lt;br /&gt;
        $Value=$ReadUninstall.GetValue(&amp;quot;DisplayName&amp;quot;) &lt;br /&gt;
        &lt;br /&gt;
        if($Value -ne $null){&lt;br /&gt;
             if( !$Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                Write-Host &amp;quot;Installitud: &amp;quot; $Value&lt;br /&gt;
                }&lt;br /&gt;
             &lt;br /&gt;
             if( $Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                  #Write-Host $pc.Name &amp;quot;Sisaldab installitud programmide hulgas otsitava stringiga ($otsitav) programmi!&amp;quot; -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  Write-Host &amp;quot;Leitud Sobivus : &amp;quot; -NoNewline; Write-Host $Value -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  $loendur ++&lt;br /&gt;
                  if( $compuArray -notContains $pc.Name ){&lt;br /&gt;
                        $compuArray += $pc.Name&lt;br /&gt;
                    }&lt;br /&gt;
                }&lt;br /&gt;
        }&lt;br /&gt;
&lt;br /&gt;
    } &lt;br /&gt;
    $kogus --&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsimine lõpetatud, leitud $loendur sobivust järgmistes masinates:&amp;quot; -ForegroundColor yellow&lt;br /&gt;
foreach($compu in $compuArray){&lt;br /&gt;
    Write-Host $compu -ForegroundColor red&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
exit&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45410</id>
		<title>PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45410"/>
		<updated>2012-01-07T14:20:48Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;source lang=&amp;quot;powershell&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;#&lt;br /&gt;
.SYNOPSIS&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.&lt;br /&gt;
&lt;br /&gt;
.DESCRIPTION&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni parameetriga määratud stringi sisaldava nimega.&lt;br /&gt;
    Algselt püüdsin teha asja WMI objekti kasutades ent siis selgus, et Get-WmiObject -Class &#039;Win32_Product&#039; -computerName $computer ei näita kõiki installitud programme vaid ainult msi installitud asju.&lt;br /&gt;
    Seepärast on kasutatud registritest lugemist.&lt;br /&gt;
&lt;br /&gt;
    Autor: Margus Nairis AK41&lt;br /&gt;
    &lt;br /&gt;
.NOTES&lt;br /&gt;
    Autor : Margus NAiris AK41&lt;br /&gt;
    &lt;br /&gt;
.LINK&lt;br /&gt;
&lt;br /&gt;
    http://itcollege.ee/~mnairis&lt;br /&gt;
    &lt;br /&gt;
.EXAMPLE&lt;br /&gt;
    &lt;br /&gt;
    Kasutades ilma parameetrita otsib AD masinate seast installitud programme ja &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab stringi &#039;torrent&#039;.&lt;br /&gt;
    PS&amp;gt; ADComputers_4.ps&lt;br /&gt;
    &lt;br /&gt;
    Kasutades parameetriga FindString otsib AD masinate seast installitud programme ja &lt;br /&gt;
    &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab parameetris kasutatud stringi.&lt;br /&gt;
    Järgnevad kaks näidet leiavad näiteks Oracle Virtual Boxi masinatest.&lt;br /&gt;
    &lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 rtu&lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 -FindString rtu&lt;br /&gt;
    &lt;br /&gt;
.PARAMETER FindString&lt;br /&gt;
&lt;br /&gt;
    Peab olema string tüüpi, mitte kohustuslik (vaikimisi on siis &#039;torrent&#039;)&lt;br /&gt;
    &lt;br /&gt;
#&amp;gt;&lt;br /&gt;
&lt;br /&gt;
param (&lt;br /&gt;
[Parameter(Position=0, Mandatory=$false)]&lt;br /&gt;
[string] $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
&lt;br /&gt;
#### See tingimus muutub mõtetuks, sest parameetris juba määratud vaikimisi väärtus.&lt;br /&gt;
#if($FindString -eq $null){&lt;br /&gt;
#    $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
#}&lt;br /&gt;
&lt;br /&gt;
# impordin ActiveDirectory Mooduli Serveri jaoks.&lt;br /&gt;
 Import-Module ActiveDirectory&lt;br /&gt;
 &lt;br /&gt;
$computers = Get-ADComputer -Filter * &lt;br /&gt;
$kogus = $computers.Length&lt;br /&gt;
$otsitav = $FindString&lt;br /&gt;
$loendur = 0&lt;br /&gt;
$compuArray = @()&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsin installitud programme ja &#039;&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host &amp;quot; vilistan &amp;quot; -NoNewline -ForegroundColor red -BackgroundColor yellow; &lt;br /&gt;
Write-Host &amp;quot;&#039; kui leian otsitavat stringi (&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host $otsitav.ToLower() -ForegroundColor Yellow -NoNewline;&lt;br /&gt;
Write-Host &amp;quot;) sisaldava programmi.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;ActiveDirectorys: &amp;quot; $kogus &amp;quot;masinat.&amp;quot; -ForegroundColor Yellow &lt;br /&gt;
Write-Host &amp;quot;Ole kannatlik, kuniks kõik masinad on läbi käidud.&amp;quot; -ForegroundColor Yellow&lt;br /&gt;
&lt;br /&gt;
# Branch of the Registry &lt;br /&gt;
$Branch=&#039;LocalMachine&#039; &lt;br /&gt;
&lt;br /&gt;
# Main Sub Branch you need to open &lt;br /&gt;
$SubBranch=&amp;quot;SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall&amp;quot;&lt;br /&gt;
&lt;br /&gt;
FOREACH ($pc in $computers) &lt;br /&gt;
{ &lt;br /&gt;
    write-host&lt;br /&gt;
    write-host $kogus&lt;br /&gt;
    write-host &amp;quot;Masin: &amp;quot; $pc.Name&lt;br /&gt;
    &lt;br /&gt;
    try{&lt;br /&gt;
    $registry=[microsoft.win32.registrykey]::OpenRemoteBaseKey(&#039;LocalMachine&#039;,$pc.Name) &lt;br /&gt;
    }catch{}&lt;br /&gt;
    $registrykey=$registry.OpenSubKey($Subbranch) &lt;br /&gt;
    $SubKeys=$registrykey.GetSubKeyNames() &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
    Foreach ($key in $subkeys) &lt;br /&gt;
    { &lt;br /&gt;
        $exactkey=$key &lt;br /&gt;
        $NewSubKey=$SubBranch+&amp;quot;\\&amp;quot;+$exactkey &lt;br /&gt;
        $ReadUninstall=$registry.OpenSubKey($NewSubKey) &lt;br /&gt;
        $Value=$ReadUninstall.GetValue(&amp;quot;DisplayName&amp;quot;) &lt;br /&gt;
        &lt;br /&gt;
        if($Value -ne $null){&lt;br /&gt;
             if( !$Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                Write-Host &amp;quot;Installitud: &amp;quot; $Value&lt;br /&gt;
                }&lt;br /&gt;
             &lt;br /&gt;
             if( $Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                  #Write-Host $pc.Name &amp;quot;Sisaldab installitud programmide hulgas otsitava stringiga ($otsitav) programmi!&amp;quot; -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  Write-Host &amp;quot;Leitud Sobivus : &amp;quot; -NoNewline; Write-Host $Value -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  $loendur ++&lt;br /&gt;
                  if( $compuArray -notContains $pc.Name ){&lt;br /&gt;
                        $compuArray += $pc.Name&lt;br /&gt;
                    }&lt;br /&gt;
                }&lt;br /&gt;
        }&lt;br /&gt;
&lt;br /&gt;
    } &lt;br /&gt;
    $kogus --&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsimine lõpetatud, leitud $loendur sobivust järgmistes masinates:&amp;quot; -ForegroundColor yellow&lt;br /&gt;
foreach($compu in $compuArray){&lt;br /&gt;
    Write-Host $compu -ForegroundColor red&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
exit&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45409</id>
		<title>PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=PowerShell:_Margus_Nairis,_AD-FindInstalledPrograms.ps1&amp;diff=45409"/>
		<updated>2012-01-07T14:19:20Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: Created page with &amp;#039;&amp;lt;# .SYNOPSIS     Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.  .DESCRIPTION     Leiab ActiveDir…&amp;#039;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&amp;lt;#&lt;br /&gt;
.SYNOPSIS&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni otsitavat stringi sisaldav.&lt;br /&gt;
&lt;br /&gt;
.DESCRIPTION&lt;br /&gt;
    Leiab ActiveDirectoryst kõik masinad ja kontrollib kas nende installitud programmide seas on mõni parameetriga määratud stringi sisaldava nimega.&lt;br /&gt;
    Algselt püüdsin teha asja WMI objekti kasutades ent siis selgus, et Get-WmiObject -Class &#039;Win32_Product&#039; -computerName $computer ei näita kõiki installitud programme vaid ainult msi installitud asju.&lt;br /&gt;
    Seepärast on kasutatud registritest lugemist.&lt;br /&gt;
&lt;br /&gt;
    Autor: Margus Nairis AK41&lt;br /&gt;
    &lt;br /&gt;
.NOTES&lt;br /&gt;
    Autor : Margus NAiris AK41&lt;br /&gt;
    &lt;br /&gt;
.LINK&lt;br /&gt;
&lt;br /&gt;
    http://itcollege.ee/~mnairis&lt;br /&gt;
    &lt;br /&gt;
.EXAMPLE&lt;br /&gt;
    &lt;br /&gt;
    Kasutades ilma parameetrita otsib AD masinate seast installitud programme ja &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab stringi &#039;torrent&#039;.&lt;br /&gt;
    PS&amp;gt; ADComputers_4.ps&lt;br /&gt;
    &lt;br /&gt;
    Kasutades parameetriga FindString otsib AD masinate seast installitud programme ja &lt;br /&gt;
    &#039;vilistab&#039; kui leiaab mõne neist, mis sisaldab parameetris kasutatud stringi.&lt;br /&gt;
    Järgnevad kaks näidet leiavad näiteks Oracle Virtual Boxi masinatest.&lt;br /&gt;
    &lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 rtu&lt;br /&gt;
    PS&amp;gt; .\AD-FindInstalled.ps1 -FindString rtu&lt;br /&gt;
    &lt;br /&gt;
.PARAMETER FindString&lt;br /&gt;
&lt;br /&gt;
    Peab olema string tüüpi, mitte kohustuslik (vaikimisi on siis &#039;torrent&#039;)&lt;br /&gt;
    &lt;br /&gt;
#&amp;gt;&lt;br /&gt;
&lt;br /&gt;
param (&lt;br /&gt;
[Parameter(Position=0, Mandatory=$false)]&lt;br /&gt;
[string] $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
)&lt;br /&gt;
&lt;br /&gt;
#### See tingimus muutub mõtetuks, sest parameetris juba määratud vaikimisi väärtus.&lt;br /&gt;
#if($FindString -eq $null){&lt;br /&gt;
#    $FindString = &amp;quot;torrent&amp;quot;&lt;br /&gt;
#}&lt;br /&gt;
&lt;br /&gt;
# impordin ActiveDirectory Mooduli Serveri jaoks.&lt;br /&gt;
 Import-Module ActiveDirectory&lt;br /&gt;
 &lt;br /&gt;
$computers = Get-ADComputer -Filter * &lt;br /&gt;
$kogus = $computers.Length&lt;br /&gt;
$otsitav = $FindString&lt;br /&gt;
$loendur = 0&lt;br /&gt;
$compuArray = @()&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsin installitud programme ja &#039;&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host &amp;quot; vilistan &amp;quot; -NoNewline -ForegroundColor red -BackgroundColor yellow; &lt;br /&gt;
Write-Host &amp;quot;&#039; kui leian otsitavat stringi (&amp;quot; -NoNewline;&lt;br /&gt;
Write-Host $otsitav.ToLower() -ForegroundColor Yellow -NoNewline;&lt;br /&gt;
Write-Host &amp;quot;) sisaldava programmi.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;ActiveDirectorys: &amp;quot; $kogus &amp;quot;masinat.&amp;quot; -ForegroundColor Yellow &lt;br /&gt;
Write-Host &amp;quot;Ole kannatlik, kuniks kõik masinad on läbi käidud.&amp;quot; -ForegroundColor Yellow&lt;br /&gt;
&lt;br /&gt;
# Branch of the Registry &lt;br /&gt;
$Branch=&#039;LocalMachine&#039; &lt;br /&gt;
&lt;br /&gt;
# Main Sub Branch you need to open &lt;br /&gt;
$SubBranch=&amp;quot;SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall&amp;quot;&lt;br /&gt;
&lt;br /&gt;
FOREACH ($pc in $computers) &lt;br /&gt;
{ &lt;br /&gt;
    write-host&lt;br /&gt;
    write-host $kogus&lt;br /&gt;
    write-host &amp;quot;Masin: &amp;quot; $pc.Name&lt;br /&gt;
    &lt;br /&gt;
    try{&lt;br /&gt;
    $registry=[microsoft.win32.registrykey]::OpenRemoteBaseKey(&#039;LocalMachine&#039;,$pc.Name) &lt;br /&gt;
    }catch{}&lt;br /&gt;
    $registrykey=$registry.OpenSubKey($Subbranch) &lt;br /&gt;
    $SubKeys=$registrykey.GetSubKeyNames() &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
    Foreach ($key in $subkeys) &lt;br /&gt;
    { &lt;br /&gt;
        $exactkey=$key &lt;br /&gt;
        $NewSubKey=$SubBranch+&amp;quot;\\&amp;quot;+$exactkey &lt;br /&gt;
        $ReadUninstall=$registry.OpenSubKey($NewSubKey) &lt;br /&gt;
        $Value=$ReadUninstall.GetValue(&amp;quot;DisplayName&amp;quot;) &lt;br /&gt;
        &lt;br /&gt;
        if($Value -ne $null){&lt;br /&gt;
             if( !$Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                Write-Host &amp;quot;Installitud: &amp;quot; $Value&lt;br /&gt;
                }&lt;br /&gt;
             &lt;br /&gt;
             if( $Value.ToLower().Contains($otsitav.ToLower()) ){&lt;br /&gt;
                  #Write-Host $pc.Name &amp;quot;Sisaldab installitud programmide hulgas otsitava stringiga ($otsitav) programmi!&amp;quot; -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  Write-Host &amp;quot;Leitud Sobivus : &amp;quot; -NoNewline; Write-Host $Value -foregroundcolor red -backgroundcolor yellow&lt;br /&gt;
                  $loendur ++&lt;br /&gt;
                  if( $compuArray -notContains $pc.Name ){&lt;br /&gt;
                        $compuArray += $pc.Name&lt;br /&gt;
                    }&lt;br /&gt;
                }&lt;br /&gt;
        }&lt;br /&gt;
&lt;br /&gt;
    } &lt;br /&gt;
    $kogus --&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
Write-Host &amp;quot;Otsimine lõpetatud, leitud $loendur sobivust järgmistes masinates:&amp;quot; -ForegroundColor yellow&lt;br /&gt;
foreach($compu in $compuArray){&lt;br /&gt;
    Write-Host $compu -ForegroundColor red&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
Write-Host&lt;br /&gt;
exit&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Skriptimiskeeled:_powershelli_kodut%C3%B6%C3%B6d_2011,_s%C3%BCgis,_kaug%C3%B5pe&amp;diff=45408</id>
		<title>Skriptimiskeeled: powershelli kodutööd 2011, sügis, kaugõpe</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Skriptimiskeeled:_powershelli_kodut%C3%B6%C3%B6d_2011,_s%C3%BCgis,_kaug%C3%B5pe&amp;diff=45408"/>
		<updated>2012-01-07T14:18:29Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Jaan Igamees==&lt;br /&gt;
Lühike jutt, mida skript teeb... bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla, bla. &lt;br /&gt;
&lt;br /&gt;
[[PowerShell: Jaan Igamees, kavalskript]]&lt;br /&gt;
&lt;br /&gt;
==Dmitri Šlõkov==&lt;br /&gt;
Skript otsib arvutist meediafailid. Käivitades skripti võtmega -stage x, otsitakse keelatud failid. Kõik tulemused kirjutakse tekstifaili.&lt;br /&gt;
&lt;br /&gt;
[[PowerShell: Dmitri Šlõkov, kodutööskript]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Pavel Kodotšigov==&lt;br /&gt;
Skript lisab domeeni kasutajaid antud csv-failist&lt;br /&gt;
&lt;br /&gt;
[[PowerShell: Pavel Kodotšigov, CreateFromCSV.ps1]]&lt;br /&gt;
&lt;br /&gt;
[[naidis.csv]]&lt;br /&gt;
&lt;br /&gt;
==Margus Nairis==&lt;br /&gt;
Skript otsib Active Directory masinatest installitud programme ja &#039;vilistab&#039; kui leiab parameetriga kaasa antud või torrenti nimelise.&lt;br /&gt;
&lt;br /&gt;
[[PowerShell: Margus Nairis, AD-FindInstalledPrograms.ps1 ]]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32977</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32977"/>
		<updated>2011-05-26T19:14:21Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on hea ning kasuliku artikliga. &amp;lt;br /&amp;gt;&amp;lt;br /&amp;gt;&lt;br /&gt;
On väga teretulnud, et autor esmalt kirjeldab erinevaid virtualiseerimise viise ning võtteid ja nende erinevusi.&lt;br /&gt;
&amp;lt;br /&amp;gt;&amp;lt;br /&amp;gt;&lt;br /&gt;
Lähemalt tutvustatakse siis aga Kernel-based Virtual Machine Ubuntu operatsioonisüsteemist vaadatuna. &amp;lt;br /&amp;gt;&lt;br /&gt;
Hea on näha, et autor on selgitanud programmi samm-sammulist üles seadmist ning välja toonud ka work-aroundi Windows kliendi puhuks. &lt;br /&gt;
&amp;lt;br /&amp;gt;&amp;lt;br /&amp;gt;&lt;br /&gt;
Seega on artikkel igati abiks algajale kasutajale, kes KVM&#039;iga ühel päeval tegelema peaks. &amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;lt;br /&amp;gt;&lt;br /&gt;
Kui jätta 1 punkt pandiks, et artikkel ajapikku täieneb ja tasapisi veel sügavamaks settib siis minu praegune hinne oleks künmepallisüsteemis 9.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32975</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32975"/>
		<updated>2011-05-26T19:13:53Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on hea ning kasuliku artikliga. &amp;lt;br /&amp;gt;&lt;br /&gt;
On väga teretulnud, et autor esmalt kirjeldab erinevaid virtualiseerimise viise ning võtteid ja nende erinevusi.&lt;br /&gt;
&amp;lt;br /&amp;gt;&lt;br /&gt;
Lähemalt tutvustatakse siis aga Kernel-based Virtual Machine Ubuntu operatsioonisüsteemist vaadatuna. &amp;lt;br /&amp;gt;&lt;br /&gt;
Hea on näha, et autor on selgitanud programmi samm-sammulist üles seadmist ning välja toonud ka work-aroundi Windows kliendi puhuks. &lt;br /&gt;
&amp;lt;br /&amp;gt;&lt;br /&gt;
Seega on artikkel igati abiks algajale kasutajale, kes KVM&#039;iga ühel päeval tegelema peaks. &amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;lt;br /&amp;gt;&lt;br /&gt;
Kui jätta 1 punkt pandiks, et artikkel ajapikku täieneb ja tasapisi veel sügavamaks settib siis minu praegune hinne oleks künmepallisüsteemis 9.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32972</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32972"/>
		<updated>2011-05-26T19:11:18Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on hea ning kasuliku artikliga. &lt;br /&gt;
On väga teretulnud, et autor esmalt kirjeldab erinevaid virtualiseerimise viise ning võtteid ja nende erinevusi.&lt;br /&gt;
&lt;br /&gt;
Lähemalt tutvustatakse siis aga Kernel-based Virtual Machine Ubuntu operatsioonisüsteemist vaadatuna. &lt;br /&gt;
Hea on näha, et autor on selgitanud programmi samm-sammulist üles seadmist ning välja toonud ka work-aroundi Windows kliendi puhuks. &lt;br /&gt;
&lt;br /&gt;
Seega on artikkel igati abiks algajale kasutajale, kes KVM&#039;iga ühel päeval tegelema peaks. &lt;br /&gt;
&lt;br /&gt;
Hindeks paneksin ma kümnepallisüsttemis 9 kasutajasõbralikkuse ja viitsimise eest pisut rohkem süveneda ning aega panustada.&lt;br /&gt;
1 punkti jätaks veel võimalusele artiklit ajapikku täiendada ja sügavamaks kirjutada.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32967</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32967"/>
		<updated>2011-05-26T19:07:04Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on üsna hea artikliga. &lt;br /&gt;
On väga teretulnud, et autor esmalt kirjeldab erinevaid virtualiseerimise viise ning võtteid ja nende erinevusi.&lt;br /&gt;
&lt;br /&gt;
Lähemalt tutvustatakse siis aga Kernel based Virtual Machine Ubuntu põhjal. Hea on näha, et autor on selgitanud, samm-sammulist üles seadmist ning välja toonud ka work-aroundi Windows kliendi puhuks. &lt;br /&gt;
&lt;br /&gt;
Seega on artikkel igati abiks algajale kasutajale, kes KVM&#039;iga ühel päeval tegelema peaks. &lt;br /&gt;
&lt;br /&gt;
Hindeks paneksin mina 10/10 kasutajasõbralikkuse ja viitsimise eest pisut enam aega panustada.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32965</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32965"/>
		<updated>2011-05-26T19:06:03Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on üsna hea artikliga. Autor kirjeldab alustuseks erinevaid virtualiseerimise võtteid ja nende erinevusi.&lt;br /&gt;
&lt;br /&gt;
Lähemalt tutvustatakse siis aga Kernel based Virtual Machine Ubuntu põhjal. Hea on näha, et autor on selgitanud, samm-sammulist üles seadmist ning välja toonud ka work-aroundi Windows kliendi puhuks. &lt;br /&gt;
&lt;br /&gt;
Seega on artikkel igati abiks algajale kasutajale, kes KVM&#039;iga ühel päeval tegelema peaks. &lt;br /&gt;
&lt;br /&gt;
Hindeks paneksin mina 10/10 kasutajasõbralikkuse ja viitsimise eest pisut enam aega panustada.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32963</id>
		<title>Talk:KVM</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:KVM&amp;diff=32963"/>
		<updated>2011-05-26T19:00:53Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: Created page with &amp;#039;Pean tunnistama, et tegu on üsna hea artikliga. Autor kirjeldab alustuseks erinevaid virtualiseerimise võtteid ja nende erinevusi.&amp;#039;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Pean tunnistama, et tegu on üsna hea artikliga. Autor kirjeldab alustuseks erinevaid virtualiseerimise võtteid ja nende erinevusi.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=28915</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=28915"/>
		<updated>2011-04-30T18:28:40Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Üldtutvustus. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31&lt;br /&gt;
:Arvustab Alvar Teearu AK31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		* püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		* tahaksid testida võrgu turvalisust, &lt;br /&gt;
::		* oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Pluginad / Laiendused : ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) - Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; -&lt;br /&gt;
&lt;br /&gt;
=== Tööriistad: ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=26789</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=26789"/>
		<updated>2011-04-15T12:48:54Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Pluginad / Laiendused : ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) - Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; -&lt;br /&gt;
&lt;br /&gt;
=== Tööriistad: ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26788</id>
		<title>Operatsioonisüsteemide referaadid 2011 kevad</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26788"/>
		<updated>2011-04-15T12:47:53Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Margus Nairis AK31 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Kaugõpe=&lt;br /&gt;
==Rene Albin AK31==&lt;br /&gt;
==Lembit Elmik AK21==						&lt;br /&gt;
==Aleksei Issaikin AK21==&lt;br /&gt;
[[Ubuntu Serveri Install]]&lt;br /&gt;
&lt;br /&gt;
==Andre Jõgi AK21==					&lt;br /&gt;
==Pavel Kodotšigov AK22==					&lt;br /&gt;
==Ivo Kruusamäe AK21==					&lt;br /&gt;
==Siim Kullerkupp AK21==					&lt;br /&gt;
==Andres Kõrvemaa AK21==					&lt;br /&gt;
==Lauri Liibert AK21==					&lt;br /&gt;
==Märt Lindre AK21==&lt;br /&gt;
&lt;br /&gt;
[[Linux saalealaa ehk swap]] [[User:Mlindre|Mlindre]] 15:27, 15 April 2011 (EEST)&lt;br /&gt;
&lt;br /&gt;
==Rasmus Linnamäe AK22==					&lt;br /&gt;
==Priit Lume AK31==					&lt;br /&gt;
==Tiit Maripuu AK22==					&lt;br /&gt;
==Marko Megerild AK21==						&lt;br /&gt;
==Artur Mölter AK22==					&lt;br /&gt;
==Margus Nairis AK31==&lt;br /&gt;
&lt;br /&gt;
[[Wireshark]] Valmis ülevaatamiseks.&lt;br /&gt;
&lt;br /&gt;
==Karel Niine AK22==&lt;br /&gt;
[[PXE boot]] (Preboot Execution Environment)&lt;br /&gt;
&lt;br /&gt;
==Ulvar Petmanson AK22==					&lt;br /&gt;
==Märten Rodes AK22==					&lt;br /&gt;
==Tanel Štaub AK22==					&lt;br /&gt;
==Alvar Teearu AK31==					&lt;br /&gt;
==Aleksei Timošenko AK21==&lt;br /&gt;
=Päevaõpe=&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26782</id>
		<title>Operatsioonisüsteemide referaadid 2011 kevad</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26782"/>
		<updated>2011-04-15T12:26:48Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Margus Nairis AK31 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Kaugõpe=&lt;br /&gt;
==Rene Albin AK31==&lt;br /&gt;
==Lembit Elmik AK21==						&lt;br /&gt;
==Aleksei Issaikin AK21==&lt;br /&gt;
[[Ubuntu Serveri Install]]&lt;br /&gt;
&lt;br /&gt;
==Andre Jõgi AK21==					&lt;br /&gt;
==Pavel Kodotšigov AK22==					&lt;br /&gt;
==Ivo Kruusamäe AK21==					&lt;br /&gt;
==Siim Kullerkupp AK21==					&lt;br /&gt;
==Andres Kõrvemaa AK21==					&lt;br /&gt;
==Lauri Liibert AK21==					&lt;br /&gt;
==Märt Lindre AK21==					&lt;br /&gt;
==Rasmus Linnamäe AK22==					&lt;br /&gt;
==Priit Lume AK31==					&lt;br /&gt;
==Tiit Maripuu AK22==					&lt;br /&gt;
==Marko Megerild AK21==						&lt;br /&gt;
==Artur Mölter AK22==					&lt;br /&gt;
==Margus Nairis AK31==&lt;br /&gt;
&lt;br /&gt;
Wireshark - [ https://wiki.itcollege.ee/index.php/Wireshark ] Valmis ülevaatamiseks.&lt;br /&gt;
&lt;br /&gt;
==Karel Niine AK22==					&lt;br /&gt;
==Ulvar Petmanson AK22==					&lt;br /&gt;
==Märten Rodes AK22==					&lt;br /&gt;
==Tanel Štaub AK22==					&lt;br /&gt;
==Alvar Teearu AK31==					&lt;br /&gt;
==Aleksei Timošenko AK21==&lt;br /&gt;
=Päevaõpe=&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26777</id>
		<title>Operatsioonisüsteemide referaadid 2011 kevad</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Operatsioonis%C3%BCsteemide_referaadid_2011_kevad&amp;diff=26777"/>
		<updated>2011-04-15T12:25:18Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Margus Nairis AK31 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Kaugõpe=&lt;br /&gt;
==Rene Albin AK31==&lt;br /&gt;
==Lembit Elmik AK21==						&lt;br /&gt;
==Aleksei Issaikin AK21==					&lt;br /&gt;
==Andre Jõgi AK21==					&lt;br /&gt;
==Pavel Kodotšigov AK22==					&lt;br /&gt;
==Ivo Kruusamäe AK21==					&lt;br /&gt;
==Siim Kullerkupp AK21==					&lt;br /&gt;
==Andres Kõrvemaa AK21==					&lt;br /&gt;
==Lauri Liibert AK21==					&lt;br /&gt;
==Märt Lindre AK21==					&lt;br /&gt;
==Rasmus Linnamäe AK22==					&lt;br /&gt;
==Priit Lume AK31==					&lt;br /&gt;
==Tiit Maripuu AK22==					&lt;br /&gt;
==Marko Megerild AK21==						&lt;br /&gt;
==Artur Mölter AK22==					&lt;br /&gt;
==Margus Nairis AK31==&lt;br /&gt;
&lt;br /&gt;
Wireshark - [ https://wiki.itcollege.ee/index.php/Wireshark ]&lt;br /&gt;
&lt;br /&gt;
==Karel Niine AK22==					&lt;br /&gt;
==Ulvar Petmanson AK22==					&lt;br /&gt;
==Märten Rodes AK22==					&lt;br /&gt;
==Tanel Štaub AK22==					&lt;br /&gt;
==Alvar Teearu AK31==					&lt;br /&gt;
==Aleksei Timošenko AK21==&lt;br /&gt;
=Päevaõpe=&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25957</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25957"/>
		<updated>2011-04-06T06:39:24Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Pluginad / Laiendused : */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Pluginad / Laiendused : ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) - Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; -&lt;br /&gt;
&lt;br /&gt;
=== Tööriistad: ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25956</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25956"/>
		<updated>2011-04-06T06:38:43Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Pluginad / Laiendused : ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Tööriistad: ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25955</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25955"/>
		<updated>2011-04-06T06:38:08Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Pluginad / Laiendused : ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Tööriistad: ===&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25954</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25954"/>
		<updated>2011-04-06T06:26:06Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Kasutamine. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
Siinkohal ON mõistlik tutvuda Wireshark ametliku dokumentatsiooni ja kasutusjuhendiga.&lt;br /&gt;
[ http://www.wireshark.org/docs/ ]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25953</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25953"/>
		<updated>2011-04-06T06:21:01Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Kasutamine. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
::[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
::[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25952</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25952"/>
		<updated>2011-04-06T06:20:34Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Kasutamine. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
[[File:wshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25951</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25951"/>
		<updated>2011-04-06T06:19:22Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Kasutamine. */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
[[File:wireshark_1.png]]&lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
[[File:wireshark.jpg]]&lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=File:Wshark_1.png&amp;diff=25950</id>
		<title>File:Wshark 1.png</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=File:Wshark_1.png&amp;diff=25950"/>
		<updated>2011-04-06T06:17:50Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: Wiresharki kasutamine. Üldine.&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Wiresharki kasutamine. Üldine.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=File:Wireshark.jpg&amp;diff=25949</id>
		<title>File:Wireshark.jpg</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=File:Wireshark.jpg&amp;diff=25949"/>
		<updated>2011-04-06T06:17:07Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: Wireshark näitab lahtiselt üle võrgu saadetavaid paroole.&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Wireshark näitab lahtiselt üle võrgu saadetavaid paroole.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25948</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25948"/>
		<updated>2011-04-06T06:12:38Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25947</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25947"/>
		<updated>2011-04-06T06:12:00Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
[[File:Example.jpg]]&lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25946</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25946"/>
		<updated>2011-04-06T06:10:02Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [ http://wiki.wireshark.org/Mate ] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;NB!&#039;&#039;&#039; Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25945</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25945"/>
		<updated>2011-04-06T06:08:01Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25944</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25944"/>
		<updated>2011-04-06T06:07:38Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
P:eamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
:Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
: &#039;&#039;&#039;NB!&#039;&#039;&#039; Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile! &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25943</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25943"/>
		<updated>2011-04-06T06:06:42Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
P:eamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
::		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
::		testida võrgu turvalisust, &lt;br /&gt;
::		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
:&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
:&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
:&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
:&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=== Laetavate failide formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
:• Sun snoop ja atmsnoop&lt;br /&gt;
:• Shomiti/Finisar Surveyor &lt;br /&gt;
:• Novell LANalyzer capture failid&lt;br /&gt;
:• Microsoft Network Monitor capture failid&lt;br /&gt;
:• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
:• Cinco Networks NetXray captures&lt;br /&gt;
:• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
:• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
:• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
:• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
:• Network Instruments Observer version 9 captures&lt;br /&gt;
:• Lucent/Ascend router debug output&lt;br /&gt;
:• HP-UX&#039;s nettl&lt;br /&gt;
:• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
:• ISDN4BSD i4btrace utility&lt;br /&gt;
:• traces from the EyeSDN USB S0&lt;br /&gt;
:• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
:• pppd logs (pppdump format)&lt;br /&gt;
:• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
:• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
:• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
:• the output from CoSine L2 debug&lt;br /&gt;
:• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
:• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
:• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
:• Catapult DCT2000 .out files&lt;br /&gt;
:• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
:• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
:• Juniper Netscreen snoop captures&lt;br /&gt;
:• Symbian OS btsnoop captures&lt;br /&gt;
:• Tamosoft CommView captures&lt;br /&gt;
:• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
:• Textronix K12 text file format captures&lt;br /&gt;
:• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Salvestatavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
:• Accellent 5Views (*.5vw)&lt;br /&gt;
:• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
:• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
:• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
:• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
:• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
:• Novell LANalyzer (*.tr1)&lt;br /&gt;
:• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
:• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
:• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Eksporditavad formaadid: ===&lt;br /&gt;
&lt;br /&gt;
:Plain text file, &lt;br /&gt;
:PostScript file, &lt;br /&gt;
:CSV e. Comma Separated Values file, &lt;br /&gt;
:C Arrays (pakcet bytes), &lt;br /&gt;
:PSML file,&lt;br /&gt;
:PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Lühendid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
:&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
:&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
:&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
:&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
:&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
:&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
:&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
:&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
:&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasulikud lingid. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25942</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25942"/>
		<updated>2011-04-06T06:02:00Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Üldtutvustus. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
		testida võrgu turvalisust, &lt;br /&gt;
		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Paigaldamine. =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark komponendid: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
:&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Pluginad / Laiendused : ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
:&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
:&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
:&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
:&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Tööriistad: ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25941</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25941"/>
		<updated>2011-04-06T05:59:46Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
&lt;br /&gt;
		püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
		testida võrgu turvalisust, &lt;br /&gt;
		oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25940</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25940"/>
		<updated>2011-04-06T05:57:52Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25939</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25939"/>
		<updated>2011-04-06T05:57:26Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;:Margus Nairis AK31,&lt;br /&gt;
:Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&amp;lt;pre&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25938</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25938"/>
		<updated>2011-04-06T05:53:15Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25937</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25937"/>
		<updated>2011-04-06T05:51:05Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&amp;lt;math&amp;gt;w&lt;br /&gt;
3&lt;br /&gt;
&amp;lt;/math&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25936</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25936"/>
		<updated>2011-04-06T05:50:05Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [ http://www.wireshark.org/download.html ]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator. &amp;lt;/ br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/ ]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25935</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25935"/>
		<updated>2011-04-06T05:49:13Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [http://www.wireshark.org/download.html]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator. &amp;lt;/ br&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25934</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25934"/>
		<updated>2011-04-06T05:46:59Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Üldtutvustus. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [http://www.wireshark.org/download.html]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark komponendid:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Pluginad / Laiendused :&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Tööriistad:&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Kasutamine. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Laetavate failide formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Salvestatavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Eksporditavad formaadid:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Lühendid. ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;nowiki&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&amp;lt;/nowiki&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Kasulikud lingid. ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25933</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25933"/>
		<updated>2011-04-06T05:41:27Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31,&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Üldtutvustus.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Paigaldamine.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [http://www.wireshark.org/download.html]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Wireshark komponendid:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Pluginad / Laiendused :&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039; - &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Tööriistad:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Wiresharki installatsioonipakett sisaldab ka &#039;&#039;&#039;WinPcap&#039;&#039;&#039; installerit, milleta ei ole võimalik reaalajas võrguliiklust püüda, kuid ilma milleta on siiski võimalik avada eelnevalt salvestatud wiresharki faile. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Laetavate failide formaadid:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump ja teised tööriistad, mis kasutavad tcpdump formaati&lt;br /&gt;
• Sun snoop ja atmsnoop&lt;br /&gt;
• Shomiti/Finisar Surveyor &lt;br /&gt;
• Novell LANalyzer capture failid&lt;br /&gt;
• Microsoft Network Monitor capture failid&lt;br /&gt;
• AIX&#039;s iptrace poolt püütu&lt;br /&gt;
• Cinco Networks NetXray captures&lt;br /&gt;
• Network Associates Windows-based Sniffer and Sniffer Pro captures&lt;br /&gt;
• Network General/Network Associates DOS-based Sniffer (compressed or uncompressed) captures&lt;br /&gt;
• AG Group/WildPackets EtherPeek/TokenPeek/AiroPeek/EtherHelp/PacketGrabber captures&lt;br /&gt;
• RADCOM&#039;s WAN/LAN Analyzer captures&lt;br /&gt;
• Network Instruments Observer version 9 captures&lt;br /&gt;
• Lucent/Ascend router debug output&lt;br /&gt;
• HP-UX&#039;s nettl&lt;br /&gt;
• Toshiba&#039;s ISDN routers dump output&lt;br /&gt;
• ISDN4BSD i4btrace utility&lt;br /&gt;
• traces from the EyeSDN USB S0&lt;br /&gt;
• IPLog format from the Cisco Secure Intrusion Detection System&lt;br /&gt;
• pppd logs (pppdump format)&lt;br /&gt;
• the output from VMS&#039;s TCPIPtrace/TCPtrace/UCX$TRACE utilities File Input / Output and Printing&lt;br /&gt;
• the text output from the DBS Etherwatch VMS utility&lt;br /&gt;
• Visual Networks&#039; Visual UpTime traffic capture&lt;br /&gt;
• the output from CoSine L2 debug&lt;br /&gt;
• the output from Accellent&#039;s 5Views LAN agents&lt;br /&gt;
• Endace Measurement Systems&#039; ERF format captures&lt;br /&gt;
• Linux Bluez Bluetooth stack hcidump -w traces&lt;br /&gt;
• Catapult DCT2000 .out files&lt;br /&gt;
• Gammu generated text output from Nokia DCT3 phones in Netmonitor mode&lt;br /&gt;
• IBM Series (OS/400) Comm traces (ASCII &amp;amp; UNICODE)&lt;br /&gt;
• Juniper Netscreen snoop captures&lt;br /&gt;
• Symbian OS btsnoop captures&lt;br /&gt;
• Tamosoft CommView captures&lt;br /&gt;
• Textronix K12xx 32bit .rf5 format captures&lt;br /&gt;
• Textronix K12 text file format captures&lt;br /&gt;
• Wireshark .pcapng captures (Experimental)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Salvestatavad formaadid:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
• libpcap, tcpdump and various other tools using tcpdump&#039;s capture format (*.pcap,*.cap,*.dmp)&lt;br /&gt;
• Accellent 5Views (*.5vw)&lt;br /&gt;
• HP-UX&#039;s nettl (*.TRC0,*.TRC1)&lt;br /&gt;
• Microsoft Network Monitor - NetMon (*.cap)&lt;br /&gt;
• Network Associates Sniffer - DOS (*.cap,*.enc,*.trc,*fdc,*.syc)&lt;br /&gt;
• Network Associates Sniffer - Windows (*.cap)&lt;br /&gt;
• Network Instruments Observer version 9 (*.bfr)&lt;br /&gt;
• Novell LANalyzer (*.tr1)&lt;br /&gt;
• Sun snoop (*.snoop,*.cap)&lt;br /&gt;
• Visual Networks Visual UpTime traffic (*.*)&lt;br /&gt;
• ... uued failiformaadid lisanduvad aeg-ajalt uuenduste või uute versioonidega.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Eksporditavad formaadid:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Plain text file, &lt;br /&gt;
PostScript file, &lt;br /&gt;
CSV e. Comma Separated Values file, &lt;br /&gt;
C Arrays (pakcet bytes), &lt;br /&gt;
PSML file,&lt;br /&gt;
PDML file&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Kasutamine.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Pilt aktiivses kasutuses olevast Wiresharkist:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Näide, kus on näha lahtiselt üle võrgu saadetav salasõna:&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Lühendid.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;DNS&#039;&#039;&#039; - Domain Name System&lt;br /&gt;
&#039;&#039;&#039;ARP&#039;&#039;&#039; - Address Resolution Protocol&lt;br /&gt;
&#039;&#039;&#039;IPv4&#039;&#039;&#039; - Internet Protocol Version 4&lt;br /&gt;
&#039;&#039;&#039;ICMP&#039;&#039;&#039; - Internet Control Message Protocol&lt;br /&gt;
&#039;&#039;&#039;UDP&#039;&#039;&#039; - User Datagram Protocol&lt;br /&gt;
&#039;&#039;&#039;TCP&#039;&#039;&#039; - Transmission Control Protocol&lt;br /&gt;
&#039;&#039;&#039;DHCP&#039;&#039;&#039; - Dynamic Host Configuration Protocol&lt;br /&gt;
&#039;&#039;&#039;HTTP&#039;&#039;&#039; - Hypertext Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;FTP&#039;&#039;&#039; - File Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;POP&#039;&#039;&#039; - Post Office Protocol&lt;br /&gt;
&#039;&#039;&#039;SMTP&#039;&#039;&#039; - Simple Mail Transfer Protocol&lt;br /&gt;
&#039;&#039;&#039;IMAP&#039;&#039;&#039; - Internet Message Access Protocol&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Kasulikud lingid.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Wireshark WIKI:[ http://wiki.wireshark.org/]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25932</id>
		<title>Wireshark</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Wireshark&amp;diff=25932"/>
		<updated>2011-04-06T05:35:17Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Margus Nairis AK31&lt;br /&gt;
Reio Kokla A31&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Wireshark ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Üldtutvustus.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Wireshark kasvas välja Ethereal projektist, mida alustas 1997 Gerald Combs eesmärgiga õppida sügavamalt võrgundust ja leida lahendusi võrguprobleemidele.&lt;br /&gt;
&lt;br /&gt;
Nüüdseks on Wireshark GNU General Public License alusel avatud koodiga võrgu pakettide analüsaator. Mida see tähendab? See tähendab, et programm püüab krabada võrgus leiduvaid pakette ning kuvada paketis leiduvat informatsiooni nii detailselt kui see võimalukuks osutub.&lt;br /&gt;
&lt;br /&gt;
Wireshark ei muuda ega tee ise võrgus muud kui vaid &#039;kuulab&#039; seda ja lubab kasutajal kuuldut näha, analüüsida ja salvestada.&lt;br /&gt;
Peamiselt osutub Wireshark kasulikuks kui Sa : &lt;br /&gt;
					püüad leida ja lahendada võrguprobleeme, &lt;br /&gt;
					testida võrgu turvalisust, &lt;br /&gt;
					oled otsustanud lahata võrguprotokollide sisu erinevatel eesmärkidel.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Paigaldamine.&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Wireshark on paigaldatav nii Windowsi kui ka UNIX laadsetesse keskkondadesse. &lt;br /&gt;
Lae oma platvormile sobiv Wireshark&#039;i viimane versioon alla aadreesilt : [http://www.wireshark.org/download.html]&lt;br /&gt;
Järgi paigaldamisjuhiseid vastavalt oma operatsioonisüsteemile. &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Wireshark komponendid:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Wireshark GTK&#039;&#039;&#039; - Graafilise kasutjaliidesega paketianalüsaator.&lt;br /&gt;
&#039;&#039;&#039;TShark&#039;&#039;&#039; - Käsurealt juhitav paketianalüsaator&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Pluginad / Laiendused :&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Dissector Plugins&#039;&#039;&#039; - Pluginad laiendatud tükeldamiseks.&lt;br /&gt;
&#039;&#039;&#039;Tree Statistics Plugins&#039;&#039;&#039; - Pluginad sügavama statistika tarbeks.&lt;br /&gt;
&#039;&#039;&#039;Mate&#039;&#039;&#039; - Meta Analysis and Tracing Engine (experimental) -Kasutaja konfigureeritav laiendus kuvafiltrile, misläbi saab &lt;br /&gt;
luua seoseid ja kasutajale sobivama protokollipuu kuvamise. ( [http://wiki.wireshark.org/Mate] )&lt;br /&gt;
&#039;&#039;&#039;SNMP MIBs&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Tööriistad:&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;Editcap&#039;&#039;&#039; - Programm, mis oskab capture faili lugeda ja ka kirjutada sinna pakettide info vastavalt kasutaja tahtmisele, kas kõik või valitud osa sellest.&lt;br /&gt;
&#039;&#039;&#039;Text2Pcap&#039;&#039;&#039; - Programm, mis loeb sisse ASCII hex dump&#039;i ning kirjutab andmed libcap-stiilis capture faili.&lt;br /&gt;
&#039;&#039;&#039;Mergecap&#039;&#039;&#039; - Programm, mis kombineerib mitmed salvestatud capture failid ühte faili kokku.&lt;br /&gt;
&#039;&#039;&#039;Capinfos&#039;&#039;&#039; - Capinfos is a program that provides information on capture files.&lt;br /&gt;
&#039;&#039;&#039;Rawshark&#039;&#039;&#039; - Rawshark is a raw packet filter.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;User&#039;s Guide&#039;&#039;&#039; - Lokaalselt installeeritud kasutusjuhend säästab abi allalaadimisest internetist, kui mistahes dialoogiaknas vajutate Help nuppu.&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Veebiserveri_labor&amp;diff=392</id>
		<title>Veebiserveri labor</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Veebiserveri_labor&amp;diff=392"/>
		<updated>2009-10-03T08:21:29Z</updated>

		<summary type="html">&lt;p&gt;Mnairis: /* Kontroll */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Legend=&lt;br /&gt;
Firmale on vaja luua kaks veebilehte:&lt;br /&gt;
&lt;br /&gt;
*www.firma.ee&lt;br /&gt;
*sales.firma.ee&lt;br /&gt;
&lt;br /&gt;
Mõlemal lehel saab kasutada php&#039;d&lt;br /&gt;
&lt;br /&gt;
Lisaks tuleb konfigureerida mysql ja phpMyAdmin andmebaaside seadistamiseks&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Tulemuse kontroll==&lt;br /&gt;
Tuleb luua test.php leht, mille vaatamisel kuvatakse phpinfo funktsiooni väljund.&lt;br /&gt;
&lt;br /&gt;
Minnes links abil lehele www.firma.ee peab kuvatama leht sisuga &amp;quot;firma pealeht&amp;quot;. Selle lehe log failid salvestada www.firma.ee.access.log ja www.firma.ee.error.log failidesse.&lt;br /&gt;
&lt;br /&gt;
Minnes links abil lehele sales.firma.ee peab kuvatama leht sisuga &amp;quot;müügiosakond&amp;quot; Logfailid analoogselt eelnevaga (sales.firma.ee.access.log jne)&lt;br /&gt;
&lt;br /&gt;
phpMyAdmin abil peab saama luua andmebaase ja tabeleid&lt;br /&gt;
&lt;br /&gt;
=Töö käik=&lt;br /&gt;
Logime ennast root kasutajaks:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo -i&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Enne installerimist tasub uuendada tarkvara nimekirja:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
apt-get update&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Testimiseks paigalda links veebisirvija&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
apt-get install links&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Veebiserveri installeerimine=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Installeerimine apt abil:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
apt-get install apache2&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Teenuse taaskäivitamine:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
/etc/init.d/apache2 restart&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=MySQL installeerimine=&lt;br /&gt;
MySQL installeerimiseks tuleb sisestada Shelli käsk:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo apt-get install mysql-server&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Installeerimisel küsitakse MySQL root parooli määramist.&lt;br /&gt;
&lt;br /&gt;
=phpMyAdmin installeerimine=&lt;br /&gt;
Kõik allpool toodud käsud teha root kasutaja alt. Root kasutajaks saab:&lt;br /&gt;
&amp;lt;pre&amp;gt;sudo -i&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Paigaldamine ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;apt-get install phpmyadmin&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Installeerimise käigus palutakse valida:&amp;lt;br /&amp;gt;&lt;br /&gt;
1) veebiserver, millele phpMyAdmin paigalda - vali apache2&amp;lt;br /&amp;gt;&lt;br /&gt;
2) administraatori parool&amp;lt;br /&amp;gt;&lt;br /&gt;
3) kas paigaldada vaikimisi seadistusega andmebaas - yes&lt;br /&gt;
&lt;br /&gt;
== Seadistamine ==&lt;br /&gt;
&lt;br /&gt;
Muudame Apache konfiguratsioonifaili &#039;&#039;&#039;/etc/apache2/apache2.conf&#039;&#039;&#039; &lt;br /&gt;
&amp;lt;pre&amp;gt;nano /etc/apache2/apache2.conf&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisa sinna rida:&lt;br /&gt;
&amp;lt;pre&amp;gt;Include /etc/phpmyadmin/apache.conf&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Apache teenus tuleb taaskäivitada:&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/init.d/apache2 restart&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Kontroll ==&lt;br /&gt;
&lt;br /&gt;
Kontrollida saab käsureaga:&lt;br /&gt;
&amp;lt;pre&amp;gt;links http://masinanimi_või_IP/phpmyadmin&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Alternatiivne seadistamine==&lt;br /&gt;
Include lause lisamise asemel võib lihtsalt linkida phpmyadmin konfiguratsioonifaili Apache seadistuste kataloogi:&lt;br /&gt;
&amp;lt;pre&amp;gt;ln -s /etc/phpmyadmin/apache.conf /etc/apache2/conf.d/phpmyadmin.conf&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Nimelahenduse loomine=&lt;br /&gt;
&lt;br /&gt;
1) Uurida välja oma masina IP käsuga &amp;lt;pre&amp;gt;ifconfig&amp;lt;/pre&amp;gt;&lt;br /&gt;
2) Muuta &#039;hosts&#039; faili käsuga &amp;lt;pre&amp;gt;sudo nano /etc/hosts&amp;lt;/pre&amp;gt;&lt;br /&gt;
3) Lisada read &lt;br /&gt;
&amp;lt;pre&amp;gt;&amp;lt;MasinaIP&amp;gt; &amp;lt;www.firma.ee&amp;gt;&lt;br /&gt;
&amp;lt;MasinaIP&amp;gt; &amp;lt;sales.firma.ee&amp;gt;&amp;lt;/pre&amp;gt;&lt;br /&gt;
4) Testimiseks pingida www.firma.ee ja sales.firma.ee&lt;br /&gt;
Kui ping vastab, on nimelahendus õigesti seadistatud&lt;br /&gt;
&lt;br /&gt;
=Nimepõhiste virtuaalserverite loomine =&lt;br /&gt;
&lt;br /&gt;
*Loo kataloogid www ja sales /var/www kausta.&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo mkdir -p /var/www/www /var/www/sales&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
*Kopeeri /etc/apache2/sites-available kaustas oleva default konfiguratsiooni faili ning loo koopiad www ja sales nimedega.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo cp /etc/apache2/sites-available/default /etc/apache2/sites-available/sales&lt;br /&gt;
sudo cp /etc/apache2/sites-available/default /etc/apache2/sites-available/www&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
*Ava sales konfiguratsiooni faili nanoga.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo nano /etc/apache2/sites-available/sales&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
*Muudetud sales fail peaks välja nägema selline :&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;lt;VirtualHost *:80&amp;gt;&lt;br /&gt;
        ServerAdmin webmaster@localhost&lt;br /&gt;
        ServerName sales.firma.ee #Lisa see rida siia&lt;br /&gt;
        DocumentRoot /var/www/sales #Seda rida tuleb muuta&lt;br /&gt;
        &amp;lt;Directory /&amp;gt;&lt;br /&gt;
                Options FollowSymLinks&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
        &amp;lt;Directory /var/www/sales&amp;gt;&lt;br /&gt;
                Options Indexes FollowSymLinks MultiViews&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ScriptAlias /cgi-bin/ /usr/lib/cgi-bin/&lt;br /&gt;
        &amp;lt;Directory &amp;quot;/usr/lib/cgi-bin&amp;quot;&amp;gt;&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Options +ExecCGI -MultiViews +SymLinksIfOwnerMatch&lt;br /&gt;
                Order allow,deny                &lt;br /&gt;
                Allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ErrorLog /var/log/apache2/sales.error.log #Seda rida tuleb muuta&lt;br /&gt;
&lt;br /&gt;
        # Possible values include: debug, info, notice, warn, error, crit,&lt;br /&gt;
        # alert, emerg.&lt;br /&gt;
        LogLevel warn&lt;br /&gt;
&lt;br /&gt;
        CustomLog /var/log/apache2/sales.access.log combined #Seda rida tuleb muuta&lt;br /&gt;
&lt;br /&gt;
    Alias /doc/ &amp;quot;/usr/share/doc/&amp;quot;&lt;br /&gt;
    &amp;lt;Directory &amp;quot;/usr/share/doc/&amp;quot;&amp;gt;&lt;br /&gt;
        Options Indexes MultiViews FollowSymLinks&lt;br /&gt;
        AllowOverride None&lt;br /&gt;
        Order deny,allow&lt;br /&gt;
        Deny from all&lt;br /&gt;
        Allow from 127.0.0.0/255.0.0.0 ::1/128&lt;br /&gt;
    &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/VirtualHost&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
*Ava www konfiguratsiooni faili nanoga.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
sudo nano /etc/apache2/sites-available/www&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
*Muudetud www fail peaks välja nägema selline :&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;lt;VirtualHost *:80&amp;gt;&lt;br /&gt;
        ServerAdmin webmaster@localhost&lt;br /&gt;
        ServerName www.firma.ee #Lisa see rida siia&lt;br /&gt;
        DocumentRoot /var/www/www #Seda rida tuleb muuta&lt;br /&gt;
        &amp;lt;Directory /&amp;gt;&lt;br /&gt;
                Options FollowSymLinks&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
        &amp;lt;Directory /var/www/www&amp;gt;&lt;br /&gt;
                Options Indexes FollowSymLinks MultiViews&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ScriptAlias /cgi-bin/ /usr/lib/cgi-bin/&lt;br /&gt;
        &amp;lt;Directory &amp;quot;/usr/lib/cgi-bin&amp;quot;&amp;gt;&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Options +ExecCGI -MultiViews +SymLinksIfOwnerMatch&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                Allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ErrorLog /var/log/apache2/www.error.log #Seda rida tuleb muuta&lt;br /&gt;
&lt;br /&gt;
        # Possible values include: debug, info, notice, warn, error, crit,&lt;br /&gt;
        # alert, emerg.&lt;br /&gt;
        LogLevel warn&lt;br /&gt;
&lt;br /&gt;
        CustomLog /var/log/apache2/www.access.log combined #Seda rida tuleb muuta&lt;br /&gt;
&lt;br /&gt;
    Alias /doc/ &amp;quot;/usr/share/doc/&amp;quot;&lt;br /&gt;
    &amp;lt;Directory &amp;quot;/usr/share/doc/&amp;quot;&amp;gt;&lt;br /&gt;
        Options Indexes MultiViews FollowSymLinks&lt;br /&gt;
        AllowOverride None&lt;br /&gt;
        Order deny,allow&lt;br /&gt;
        Deny from all&lt;br /&gt;
        Allow from 127.0.0.0/255.0.0.0 ::1/128&lt;br /&gt;
    &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/VirtualHost&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*sales ja www virtualhostide kasutamiseks tuleb keelata default lehekülg ja lubada sales ning www, sisestades käsurealt järgmised käsud:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
a2ensite sales&lt;br /&gt;
a2ensite www&lt;br /&gt;
&lt;br /&gt;
a2dissite default&lt;br /&gt;
&lt;br /&gt;
/etc/init.d/apache2 reload&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
*Testimine&lt;br /&gt;
Testimiseks tuleb luua index.html fail nii www kui ka sales kataloogi.&lt;br /&gt;
Selleks tegutse järgmiselt: &lt;br /&gt;
**Loo fail www kataloogi&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
nano /var/www/www/index.html&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
***Kirjuta faili&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;lt;h1&amp;gt;Firma pealeht&amp;lt;/h1&amp;gt;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
**Loo fail sales kataloogi&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
nano /var/www/sales/index.html&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
***Kirjuta faili&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;lt;h1&amp;gt;Myygiosakond&amp;lt;/h1&amp;gt;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
*Kontrollimiseks mine veebilehitsejaga järgmistele aadressidele:&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
links www.firma.ee&lt;br /&gt;
links sales.firma.ee&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=phpinfo lehe loomine=&lt;br /&gt;
Loo fail&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
nano /var/www/www/phpinfo.php&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Kirjuta faili&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;lt;?php&lt;br /&gt;
phpinfo();&lt;br /&gt;
?&amp;gt;&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Kontrollimiseks mine veebilehitsejaga aadressile&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
links http://www.firma.ee/phpinfo.php&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Peaks nägema standartset phpinfo lehte.&lt;br /&gt;
&lt;br /&gt;
=SSL keskkonna loomine=&lt;br /&gt;
&lt;br /&gt;
==Sertifikaadi genereerimine==&lt;br /&gt;
Kõik allpool toodud käsud teha root kasutaja alt&lt;br /&gt;
&amp;lt;pre&amp;gt;sudo -i&amp;lt;/pre&amp;gt;&lt;br /&gt;
Kõigepealt liikuda kataloogi /etc/apache2/ ja siis genereerida &#039;&#039;&#039;www.firma.ee&#039;&#039;&#039; võtmed&lt;br /&gt;
&amp;lt;pre&amp;gt;cd /etc/apache2/&amp;lt;/pre&amp;gt;&lt;br /&gt;
Käivitada seal käsk:&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl req -nodes -new -keyout www.firma.ee.key -newkey rsa:1024 &amp;gt; www.firma.ee.csr &amp;lt;/pre&amp;gt;&lt;br /&gt;
 &amp;lt;p&amp;gt;Küsimustele vastata nii nagu allpool näidatud.&amp;lt;/p&amp;gt;                    &lt;br /&gt;
&amp;lt;pre&amp;gt;Country Name (2 letter code) [AU]:EE&lt;br /&gt;
State or Province Name (full name) [Some-State]:Tallinn&lt;br /&gt;
Locality Name (eg, city) []:Tallinn&lt;br /&gt;
Organization Name (eg, company) [Internet Widgits Pty Ltd]:Firma&lt;br /&gt;
Organizational Unit Name (eg, section) []:&lt;br /&gt;
Common Name (eg, YOUR name) []:www.firma.ee&lt;br /&gt;
Email Address []:&lt;br /&gt;
A challenge password []:&lt;br /&gt;
An optional company name []:&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Käivitada need käsud&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl x509 -req -days 3650 -in www.firma.ee.csr -signkey www.firma.ee.key -out www.firma.ee.crt&amp;lt;/pre&amp;gt;&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl x509 -in www.firma.ee.crt -noout -text&amp;lt;/pre&amp;gt;&lt;br /&gt;
Nüüd genereerime &#039;&#039;&#039;sales.firma.ee&#039;&#039;&#039; võtmed&lt;br /&gt;
&amp;lt;pre&amp;gt;cd /etc/apache2/&amp;lt;/pre&amp;gt;&lt;br /&gt;
Käivitada seal käsk:&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl req -nodes -new -keyout sales.firma.ee.key -newkey rsa:1024 &amp;gt; sales.firma.ee.csr &amp;lt;/pre&amp;gt;&lt;br /&gt;
 &amp;lt;p&amp;gt;Küsimustele vastata nii nagu allpool näidatud.&amp;lt;/p&amp;gt;                    &lt;br /&gt;
&amp;lt;pre&amp;gt;Country Name (2 letter code) [AU]:EE&lt;br /&gt;
State or Province Name (full name) [Some-State]:Tallinn&lt;br /&gt;
Locality Name (eg, city) []:Tallinn&lt;br /&gt;
Organization Name (eg, company) [Internet Widgits Pty Ltd]:Firma&lt;br /&gt;
Organizational Unit Name (eg, section) []:&lt;br /&gt;
Common Name (eg, YOUR name) []:sales.firma.ee&lt;br /&gt;
Email Address []:&lt;br /&gt;
A challenge password []:&lt;br /&gt;
An optional company name []:&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Käivitada need käsud&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl x509 -req -days 3650 -in sales.firma.ee.csr -signkey sales.firma.ee.key -out sales.firma.ee.crt&amp;lt;/pre&amp;gt;&lt;br /&gt;
&amp;lt;pre&amp;gt;openssl x509 -in sales.firma.ee.crt -noout -text&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==SSL seadistamine==&lt;br /&gt;
SSL mooduli lubamiseks järgmine käsk&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
a2enmod ssl&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Seejärel restardime apache&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/init.d/apache2 restart&amp;lt;/pre&amp;gt;&lt;br /&gt;
Seadistame apache2. &lt;br /&gt;
&amp;lt;pre&amp;gt;nano /etc/apache2/ports.conf&amp;lt;/pre&amp;gt;&lt;br /&gt;
Failis ports.conf peab &amp;lt;IfModule mod_ssl.c&amp;gt; ja &amp;lt;/IfModule&amp;gt; tagide vahel olema ainult järgmised read.&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
Listen 443&lt;br /&gt;
Listen 444&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Järgnevalt muuta faili /etc/apache2/sites-enabled/www/&lt;br /&gt;
&amp;lt;pre&amp;gt;nano /etc/apache2/sites-enabled/www&amp;lt;/pre&amp;gt;&lt;br /&gt;
Lisada faili lõppu peale viimast &amp;lt;/VirtualHost&amp;gt; rida järgnev uus Virtualhosti sektsioon.&lt;br /&gt;
Jälgida, et crt ja key failid oleks vastavates kataloogides.&lt;br /&gt;
&amp;lt;pre&amp;gt;   &lt;br /&gt;
&amp;lt;VirtualHost *:443&amp;gt;&lt;br /&gt;
        ServerAdmin webmaster@localhost&lt;br /&gt;
        ServerName www.firma.ee&lt;br /&gt;
        DocumentRoot /var/www/www&lt;br /&gt;
        &amp;lt;Directory /&amp;gt;&lt;br /&gt;
                Options FollowSymLinks&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
        &amp;lt;Directory /var/www/www&amp;gt;&lt;br /&gt;
                Options Indexes FollowSymLinks MultiViews&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ScriptAlias /cgi-bin/ /usr/lib/cgi-bin/&lt;br /&gt;
        &amp;lt;Directory &amp;quot;/usr/lib/cgi-bin&amp;quot;&amp;gt;&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Options +ExecCGI -MultiViews +SymLinksIfOwnerMatch&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                Allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ErrorLog /var/log/apache2/www.error.log&lt;br /&gt;
&lt;br /&gt;
        # Possible values include: debug, info, notice, warn, error, crit,&lt;br /&gt;
        # alert, emerg.&lt;br /&gt;
        LogLevel warn&lt;br /&gt;
&lt;br /&gt;
        CustomLog /var/log/apache2/www.access.log combined&lt;br /&gt;
&lt;br /&gt;
    Alias /doc/ &amp;quot;/usr/share/doc/&amp;quot;&lt;br /&gt;
    &amp;lt;Directory &amp;quot;/usr/share/doc/&amp;quot;&amp;gt;&lt;br /&gt;
        Options Indexes MultiViews FollowSymLinks&lt;br /&gt;
        AllowOverride None&lt;br /&gt;
        Order deny,allow&lt;br /&gt;
        Deny from all&lt;br /&gt;
        Allow from 127.0.0.0/255.0.0.0 ::1/128&lt;br /&gt;
    &amp;lt;/Directory&amp;gt;&lt;br /&gt;
   ErrorLog     /var/log/apache2/www.firma.ee-ssl-error.log&lt;br /&gt;
   TransferLog  /var/log/apache2/www.firma.ee-ssl-access.log&lt;br /&gt;
&lt;br /&gt;
   SSLEngine on&lt;br /&gt;
   SSLCertificateFile /etc/apache2/www.firma.ee.crt&lt;br /&gt;
   SSLCertificateKeyFile /etc/apache2/www.firma.ee.key&lt;br /&gt;
   SSLOptions +StdEnvVars&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &amp;lt;/VirtualHost&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Nüüd tuleb muuta &#039;&#039;&#039;sales&#039;&#039;&#039; faili&lt;br /&gt;
&amp;lt;pre&amp;gt;nano /etc/apache2/sites-enabled/sales&amp;lt;/pre&amp;gt;&lt;br /&gt;
Lisada faili lõppu peale viimast &amp;lt;/VirtualHost&amp;gt; rida järgnev uus Virtualhosti sektsioon.&lt;br /&gt;
Jälgida, et crt ja key failid oleks vastavates kataloogides.&lt;br /&gt;
&amp;lt;pre&amp;gt;   &lt;br /&gt;
&amp;lt;VirtualHost *:444&amp;gt;&lt;br /&gt;
        ServerAdmin webmaster@localhost&lt;br /&gt;
        ServerName sales.firma.ee&lt;br /&gt;
        DocumentRoot /var/www/sales&lt;br /&gt;
        &amp;lt;Directory /&amp;gt;&lt;br /&gt;
                Options FollowSymLinks&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
        &amp;lt;Directory /var/www/sales&amp;gt;&lt;br /&gt;
                Options Indexes FollowSymLinks MultiViews&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ScriptAlias /cgi-bin/ /usr/lib/cgi-bin/&lt;br /&gt;
        &amp;lt;Directory &amp;quot;/usr/lib/cgi-bin&amp;quot;&amp;gt;&lt;br /&gt;
                AllowOverride None&lt;br /&gt;
                Options +ExecCGI -MultiViews +SymLinksIfOwnerMatch&lt;br /&gt;
                Order allow,deny&lt;br /&gt;
                Allow from all&lt;br /&gt;
        &amp;lt;/Directory&amp;gt;&lt;br /&gt;
&lt;br /&gt;
        ErrorLog /var/log/apache2/sales.error.log&lt;br /&gt;
&lt;br /&gt;
        # Possible values include: debug, info, notice, warn, error, crit,&lt;br /&gt;
        # alert, emerg.&lt;br /&gt;
        LogLevel warn&lt;br /&gt;
&lt;br /&gt;
        CustomLog /var/log/apache2/sales.access.log combined&lt;br /&gt;
&lt;br /&gt;
    Alias /doc/ &amp;quot;/usr/share/doc/&amp;quot;&lt;br /&gt;
    &amp;lt;Directory &amp;quot;/usr/share/doc/&amp;quot;&amp;gt;&lt;br /&gt;
        Options Indexes MultiViews FollowSymLinks&lt;br /&gt;
        AllowOverride None&lt;br /&gt;
        Order deny,allow&lt;br /&gt;
        Deny from all&lt;br /&gt;
        Allow from 127.0.0.0/255.0.0.0 ::1/128&lt;br /&gt;
    &amp;lt;/Directory&amp;gt;&lt;br /&gt;
   ErrorLog     /var/log/apache2/sales.firma.ee-ssl-error.log&lt;br /&gt;
   TransferLog  /var/log/apache2/sales.firma.ee-ssl-access.log&lt;br /&gt;
&lt;br /&gt;
   SSLEngine on&lt;br /&gt;
   SSLCertificateFile /etc/apache2/sales.firma.ee.crt&lt;br /&gt;
   SSLCertificateKeyFile /etc/apache2/sales.firma.ee.key&lt;br /&gt;
   SSLOptions +StdEnvVars&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &amp;lt;/VirtualHost&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Seejärel restardime apache&lt;br /&gt;
&amp;lt;pre&amp;gt;/etc/init.d/apache2 restart&amp;lt;/pre&amp;gt;&lt;br /&gt;
Testimiseks käivitame järgmised käsud&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
links www.firma.ee&lt;br /&gt;
links sales.firma.ee&lt;br /&gt;
links https://www.firma.ee:443&lt;br /&gt;
links https://sales.firma.ee:444&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
Kui tulevad õiged lehed ette ja erroreid ei viska, siis on kõik OK.&lt;br /&gt;
&lt;br /&gt;
=Teenuse start/stop/restart=&lt;br /&gt;
&lt;br /&gt;
Apache2 &lt;br /&gt;
&lt;br /&gt;
  sudo /etc/init.d/apache2 {start | stop | restart}&lt;br /&gt;
&lt;br /&gt;
Mysql-server&lt;br /&gt;
&lt;br /&gt;
  sudo /etc/init.d/mysql {start | stop | restart}&lt;br /&gt;
&lt;br /&gt;
=Varukoopiate tegemine=&lt;br /&gt;
&lt;br /&gt;
Veebide sisu backup siit&lt;br /&gt;
&lt;br /&gt;
  /var/www &lt;br /&gt;
&lt;br /&gt;
Veebi sales.firma backup siit&lt;br /&gt;
&lt;br /&gt;
  /var/www/sales&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Apache2 konfiguratsiooni kausta backup siit&lt;br /&gt;
&lt;br /&gt;
  /etc/apache2&lt;br /&gt;
&lt;br /&gt;
Apache2 log failide backup teha siit&lt;br /&gt;
&lt;br /&gt;
  /var/log/apache2&lt;br /&gt;
&lt;br /&gt;
=Taastamine=&lt;br /&gt;
&lt;br /&gt;
Veebi sisu andmed taasta kataloogi backupist&lt;br /&gt;
&lt;br /&gt;
  /var/www&lt;br /&gt;
&lt;br /&gt;
sales.firma andmed taasta kataloogi backupist&lt;br /&gt;
&lt;br /&gt;
  /var/www/sales&lt;br /&gt;
&lt;br /&gt;
Veebiserveri upgrades tulnud tõrked taasta varasem konfiguratsioon kataloogi backupist&lt;br /&gt;
&lt;br /&gt;
  /etc/apache2&lt;br /&gt;
&lt;br /&gt;
logifailid taasta kataloogi backupist&lt;br /&gt;
&lt;br /&gt;
  /var/log/apache2&lt;br /&gt;
&lt;br /&gt;
=Lingid=&lt;br /&gt;
&lt;br /&gt;
[http://kuutorvaja.eenet.ee/wiki/Apache&#039;i_veebiserver Kuutõrvaja - Apache&#039;i veebiserver] - Siit saab abi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Mnairis</name></author>
	</entry>
</feed>