Capture Feature is now trying to use RDP instead of wireshark?

Before posting something, READ the changelog, WATCH the videos, howto and provide following:
Your install is: Bare metal, ESXi, what CPU model, RAM, HD, what EVE version you have, output of the uname -a and any other info that might help us faster.

Moderator: mike

Post Reply
turbokebabtopgun
Posts: 11
Joined: Tue Apr 24, 2018 5:13 pm

Capture Feature is now trying to use RDP instead of wireshark?

Post by turbokebabtopgun » Tue May 08, 2018 7:27 pm

I've noticed now that when I try and do a capture, its downloading an RDP file instead of opening wireshark.

Is this something to do with not setting up the tools properly?

I'm sure this used to work before I installed the pro version.

Cheers,

JOn.

ecze
Posts: 533
Joined: Wed Mar 15, 2017 1:54 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by ecze » Wed May 09, 2018 12:51 am

wireshark runs now into eve
rdp is the acces file to open rdp session to see wireshark

E.

turbokebabtopgun
Posts: 11
Joined: Tue Apr 24, 2018 5:13 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by turbokebabtopgun » Wed May 09, 2018 5:24 pm

:?

How does that work?

How does it allow RDP to my headless ubuntu server running Eve?

Is it spinning up some other instance with a virtual desktop?

Confused.com

turbokebabtopgun
Posts: 11
Joined: Tue Apr 24, 2018 5:13 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by turbokebabtopgun » Wed May 09, 2018 5:25 pm

Please don't say i need a desktop version of Ubuntu as I'm running all this on an LXC container

If so I need to revert to using the old way and running my own wireshark.

turbokebabtopgun
Posts: 11
Joined: Tue Apr 24, 2018 5:13 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by turbokebabtopgun » Wed May 09, 2018 5:44 pm

Not Found

The requested URL /themes/adminLTE/themes/adminLTE/80083 was not found on this server.
Apache/2.4.25 (Ubuntu) Server at 10.55.88.4 Port 80

turbokebabtopgun
Posts: 11
Joined: Tue Apr 24, 2018 5:13 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by turbokebabtopgun » Wed May 09, 2018 6:00 pm

CONNECTION ERROR
The remote desktop server is currently unreachable. If the problem persists, please notify your system administrator, or check your system logs.

ecze
Posts: 533
Joined: Wed Mar 15, 2017 1:54 pm

Re: Capture Feature is now trying to use RDP instead of wireshark?

Post by ecze » Fri May 11, 2018 11:34 pm

Hi,

Reading all your posts... I don't well understand what you are trying to do....

Runing all in a LXC container ??? what does it mean ?

PRO is runnung in a Ubuntu 16.04 base.
To have wireshark running, you have to install eve-ng-dockers package. Indeed, capture feature works like this:

1. click on capture
2. EVE start a wireshark docker and create a rdp file and return this rdp file
3. User open the rdp file....

E.

Post Reply