Wireshark with Always-on Packet Capture
Wireshark is a widely-used, open-source network protocol analyzer that shows you what’s happening on your network at a packet level. It’s the de facto standard across commercial, non-profit enterprises, government agencies, and educational institutions for forensic packet analysis.
Wireshark is available for multiple platforms including Windows, Linux, MacOS, FreeBSD and many others and provides multiple built-in protocol decoders and decryption support for many protocols, powerful, user-customizable display filters and rules, and the ability to import and export packet data in multiple file-formats including pcap, pcap-NG, Endace's own Extensible Record Format (ERF) and many others.
Why combine Wireshark with the always-on, full packet capture of EndaceProbes?