User`s guide

(C) 2003 Airscanner Corp. http://www.airscanner.com
Once these settings meet your satisfaction, click the OK button to start sniffing. After you
do this, you will see a small window open up that provides you with a running tally of the
number of each type of packet collected.
NOTE: The stats window only displays the common protocols. All others are lumped under
the Other category, which will require further investigation.
3.2.4.3 Ethereal’s Filter options
After you capture a significant amount of data, the next step is to filter it based on your
preferences. For example, if you are looking for traffic generated by the AIM protocol, which is
used by AOL’s Instant Messenger, you can set up a filter to quickly parse all AIM data out of
the captured data. This can also be done before the capture; however, post-capture filtering is
recommended because it gives you the power to go back and review everything captured.
To set up a filter before the capture, use the filter option as illustrated in Figure 9.2. This
will open a filter setup window similar to Figure 9.4. To post the filter, use the filter option at
the bottom of the Ethereal window