{"id":807,"date":"2013-01-10T17:10:38","date_gmt":"2013-01-10T17:10:38","guid":{"rendered":"http:\/\/www.nooblet.org\/blog\/?p=807"},"modified":"2014-06-03T11:15:59","modified_gmt":"2014-06-03T11:15:59","slug":"installing-wireshark-tshark-on-pfsense-2-0-1","status":"publish","type":"post","link":"https:\/\/www.nooblet.org\/blog\/2013\/installing-wireshark-tshark-on-pfsense-2-0-1\/","title":{"rendered":"Installing Wireshark (tshark) on pfSense 2.0.1"},"content":{"rendered":"<p><a href=\"http:\/\/www.nooblet.org\/blog\/2013\/installing-extra-packages-on-pfsense-2-0-1\/\" target=\"_blank\">As discussed earlier<\/a>, you can add extra packages from the FreeBSD repository to pfSense.<\/p>\n<p>One of the most useful applications for any firewall is a packet sniffer. pfSense comes with tcpdump but Wireshark has more features, one of which is parsing application level protocols to give an easier understanding of traffic.<\/p>\n<p>You can install tshark using <code>pkg_add<\/code>, however pfSense is missing some key libraries,<\/p>\n<blockquote><p><code>\/libexec\/ld-elf.so.1: Shared object \"libkrb5.so.10\" not found, required by \"tshark\"<\/code><\/p><\/blockquote>\n<p>I have tar&#8217;d the required libraries which you can download here,<br \/>\n<img decoding=\"async\" src=\"\/blog\/wp-content\/plugins\/wp-downloadmanager\/images\/ext\/unknown.gif\" alt=\"\" title=\"\" style=\"vertical-align: middle;\" \/>&nbsp;&nbsp;<strong><a href=\"https:\/\/www.nooblet.org\/blog\/download\/libtshark-pfsense.tar.gz\">Libraries required by tshark on pfSense 2.0.1<\/a><\/strong> (447.6 KiB, 1,687 hits)<br><\/p>\n<p>You can also quickly install these libraries directly with the following commands,<\/p>\n<blockquote><p><code>cd \/root && fetch http:\/\/www.nooblet.org\/blog\/download\/libtshark-pfsense.tar.gz && tar xfvz libtshark-pfsense.tar.gz && mv \/root\/libtshark-pfsense\/* \/usr\/local\/lib\/ && rm -rf root\/libtshark-pfsense\/<\/code><\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>As discussed earlier, you can add extra packages from the FreeBSD repository to pfSense. One of the most useful applications for any firewall is a packet sniffer. pfSense comes with tcpdump but Wireshark has more features, one of which is parsing application level protocols to give an easier understanding of traffic. You can install tshark [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":792,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[181],"tags":[183,182,184],"class_list":["post-807","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-pfsense","tag-freebsd","tag-pfsense-2","tag-tshark"],"_links":{"self":[{"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/posts\/807","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/comments?post=807"}],"version-history":[{"count":12,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/posts\/807\/revisions"}],"predecessor-version":[{"id":1059,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/posts\/807\/revisions\/1059"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/media\/792"}],"wp:attachment":[{"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/media?parent=807"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/categories?post=807"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.nooblet.org\/blog\/wp-json\/wp\/v2\/tags?post=807"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}