There are some great Wireless traffic filters on wireshark website as well as on WiFi Ninjas Blog Wireshark filters. For different computers to communicate on the same network or on different networks they need to know one anothers IP address or MAC address. Finally, run arp -a and find the gateway IP. If you've captured packets without a MAC source address filter, and want to filter the display to show only packets from MAC address XX:XX:XX:XX:XX:XX: eth.src XX:XX:XX:XX:XX:XX if it's an Ethernet capture, wlan.src XX:XX:XX:XX:XX:XX if it's an 802.11 capture, etc. Wlan.fc.type_subtype = 0x04 & wlan_radio.signal_dbm < -75 on Windows, run ipconfig /all on a command line to see the IP address of your gateway. Wlan.fc.type_subtype = 0x05 & wlan_radio.signal_dbm < -75 I still don't get anything captured in Wireshark. I get a message saying The WakeUp signal is sent. I have another program called VNC control. I don't see anything captured in Wireshark. (wlan.fc.type_subtype=3)&(=55)ĭisplay Filters related Weak signals: wlan_radio.signal_dbm < -67 I have a program that sends out the Magic Packets called WON Magic Packet Sender. Wireshark Display Filters related 802.11 k,v,r traffic: 802.11 k,v,r Wireshark Display Filters related Retries: retry Wireshark Display Filters related Data frames traffic: data frames Wireshark Display Filters related Control frames traffic: control frames In this lab, you will use Wireshark to capture ICMP data packet IP addresses and Ethernet frame MAC addresses. Wireshark display filters: management frames Wireshark Display Filters related management traffic: It was shared as image file so I decided add different filters together and type here so people can just copy paste the filters instead having to type again themselves. These display filters are already been shared by clear to send . Wireshark has two filtering languages: One used when capturing packets, and one used when displaying packets. /rebates/&252fhow-to-search-mac-address-in-wireshark.