Ask Your Question
0

Spanning Tree-(for-bridges)_00 (xx.xx.xx.xx.xx.xx)

asked 2021-07-06 21:34:15 +0000

Vtechie gravatar image

How do I find information about the MAC address, it is not my MAC Address. I tried ether host xx.xx.xx.xx.xx.xx as a filter it just stayed pink, not green. I have searched for how to find information about the MAC Address, all I get is IP Address to MAC Address.

Thank you,

Vicky71

edit retag flag offensive close merge delete

2 Answers

Sort by » oldest newest most voted
0

answered 2021-07-07 08:36:48 +0000

BigFatCat gravatar image

The display filter is eth.dst==xx.xx.xx.xx.xx.xx, not ether host. If you are running 3.4.x, you should be able to drag-n-drop as a filter. Spanning tree utilizes different multicast destination MAC addresses.

edit flag offensive delete link more
0

answered 2021-07-06 22:15:45 +0000

André gravatar image

updated 2021-07-07 07:46:51 +0000

grahamb gravatar image

"ehter host" is a capture filter. To filter the displayed packets use a display filter. For Ethernet address use "eth.addr == xx:xx:xx:xx:xx:xx".

See also: https://gitlab.com/wireshark/wireshar... and https://www.wireshark.org/docs/man-pa...

Via the menu Statistics / Endpoints you can easily see the MAC addresses present in the file and use the 'apply as filter' in the context menu.

When using a capture filter in the 'Capture Options' menu, the syntax is: "ether host xx:xx:xx:xx:xx:xx" (colon instead of dot).

edit flag offensive delete link more

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account.

Add Answer

Question Tools

1 follower

Stats

Asked: 2021-07-06 21:34:15 +0000

Seen: 815 times

Last updated: Jul 07 '21