admin only mode
a message : the helper program for admin only mode is requesting your permission, I press yes and this message pops up again
a message : the helper program for admin only mode is requesting your permission, I press yes and this message pops up again
Presumably you have installed npcap in "Admin only" mode. This causes Wireshark to request elevation privileges each time it opens an interface.
Currently it's recommended that you do NOT use "Admin Only" mode with Wireshark.
See also bug 15082.
I also faced this issue in my Windows 10 when I started Wireshark in normal mode, and my Npcap is installed in "Admin Only" mode. My solution was to start Wireshark also in admin mode using "Run as Administrator" mode. Why don't you suggest that as a solution? Is there anything wrong about using "Run as Administrator" with Wireshark?
You should NEVER run Wireshark with elevated privileges, there are millions of lines (3 million??) of code in Wireshark that will attempt to handle whatever traffic is injected into the process and the theoretical potential of something bad happening is considerable.
For Windows 10 1909 64 bit version I was able to disable AdminOnly mode by modifying the following keys;
HKEY_LOCAL_MACHINE\SOFTWARE\WOW6432Node\NPCAP HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\npcap\Parameters HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\npcap\Parameters
Change "AdminOnly REG_DWORD" from 1 to 0 on all three keys above.
Of course the easier and safer option is to reinstall npcap without the option, "Restrict Npcap driver's access to Administrators only".
But the whole idea is to restrict access to npcap driver to non admin. Hope this helps!
Please start posting anonymously - your entry will be published after you log in or create a new account.
Asked: 2019-10-16 14:58:18 +0000
Seen: 34,309 times
Last updated: May 12 '20
how do I configure in read only mode?
SIP Custom field data.text blank or just "Yes"
How to switch Mac OS NIC to monitor mode during use internet
Where are IP headers in Monitor mode capture?
Cannot find wlan device (monitor mode) in device list / Linux mint
Custom Plugin not showing for wireshark group user but showing non-wireshark group user
How to import ISUP signaling messages and have it dissected by Wireshark?
What should be done when detecting faulty frames?