Wireshark 4.7.3
The Wireshark network protocol analyzer
Loading...
Searching...
No Matches
capture_opts.h
Go to the documentation of this file.
1/* capture_opts.h
2 * Capture options (all parameters needed to do the actual capture)
3 *
4 * Wireshark - Network traffic analyzer
5 * By Gerald Combs <gerald@wireshark.org>
6 * Copyright 1998 Gerald Combs
7 *
8 * SPDX-License-Identifier: GPL-2.0-or-later
9 */
10
11
17
18#ifndef __CAPTURE_OPTS_H__
19#define __CAPTURE_OPTS_H__
20
21#include <sys/types.h> /* for gid_t */
22
24#include <wsutil/wslog.h>
25#include <wsutil/filter_files.h>
26
27#ifdef _WIN32
28#include <windows.h>
29#endif
30
31#ifdef __cplusplus
32extern "C" {
33#endif /* __cplusplus */
34
35/*
36 * Long options.
37 * We do not currently have long options corresponding to all short
38 * options; we should probably pick appropriate option names for them.
39 *
40 * NOTE:
41 * for tshark, we're using a leading - in the optstring to prevent getopt()
42 * from permuting the argv[] entries, in this case, unknown argv[] entries
43 * will be returned as parameters to a dummy-option 1.
44 * In short: we must not use 1 here, which is another reason to use
45 * values outside the range of ASCII graphic characters.
46 */
47#define LONGOPT_LIST_TSTAMP_TYPES LONGOPT_BASE_CAPTURE+1
48#define LONGOPT_SET_TSTAMP_TYPE LONGOPT_BASE_CAPTURE+2
49#define LONGOPT_COMPRESS_TYPE LONGOPT_BASE_CAPTURE+3
50#define LONGOPT_CAPTURE_TMPDIR LONGOPT_BASE_CAPTURE+4
51#define LONGOPT_UPDATE_INTERVAL LONGOPT_BASE_CAPTURE+5
52#define LONGOPT_NO_OPTIMIZE LONGOPT_BASE_CAPTURE+6
53
54/*
55 * Options for capturing common to all capturing programs.
56 */
57#ifdef HAVE_PCAP_REMOTE
58#define OPTSTRING_A "A:"
59#else
60#define OPTSTRING_A
61#endif
62
63#define OPTSTRING_B "B:"
64
65#define OPTSTRING_I "I"
66
67// "interface" and "source" work for both Wireshark and Stratoshark flavors
68// but we only advertise the appropriate one in each application.
69#define LONGOPT_CAPTURE_COMMON \
70 {"autostop", ws_required_argument, NULL, 'a'}, \
71 {"ring-buffer", ws_required_argument, NULL, 'b'}, \
72 {"buffer-size", ws_required_argument, NULL, 'B'}, \
73 {"list-interfaces", ws_no_argument, NULL, 'D'}, \
74 {"list-sources", ws_no_argument, NULL, 'D'}, \
75 {"interface", ws_required_argument, NULL, 'i'}, \
76 {"source", ws_required_argument, NULL, 'i'}, \
77 {"monitor-mode", ws_no_argument, NULL, 'I'}, \
78 {"list-data-link-types", ws_no_argument, NULL, 'L'}, \
79 {"no-promiscuous-mode", ws_no_argument, NULL, 'p'}, \
80 {"snapshot-length", ws_required_argument, NULL, 's'}, \
81 {"linktype", ws_required_argument, NULL, 'y'}, \
82 {"list-time-stamp-types", ws_no_argument, NULL, LONGOPT_LIST_TSTAMP_TYPES}, \
83 {"no-optimize", ws_no_argument, NULL, LONGOPT_NO_OPTIMIZE}, \
84 {"time-stamp-type", ws_required_argument, NULL, LONGOPT_SET_TSTAMP_TYPE}, \
85 {"compress-type", ws_required_argument, NULL, LONGOPT_COMPRESS_TYPE}, \
86 {"temp-dir", ws_required_argument, NULL, LONGOPT_CAPTURE_TMPDIR},\
87 {"update-interval", ws_required_argument, NULL, LONGOPT_UPDATE_INTERVAL},
88
89
90#define OPTSTRING_CAPTURE_COMMON \
91 "a:" OPTSTRING_A "b:" OPTSTRING_B "c:Df:F:i:" OPTSTRING_I "Lps:y:"
92
93#ifdef HAVE_PCAP_REMOTE
94/* Type of capture source */
95typedef enum {
96 CAPTURE_IFLOCAL,
97 CAPTURE_IFREMOTE
98} capture_source;
99
100/* Type of RPCAPD Authentication */
101typedef enum {
102 CAPTURE_AUTH_NULL,
103 CAPTURE_AUTH_PWD
104} capture_auth;
105#endif
106#ifdef HAVE_PCAP_SETSAMPLING
111typedef enum {
112 CAPTURE_SAMP_NONE,
113 CAPTURE_SAMP_BY_COUNT,
115 CAPTURE_SAMP_BY_TIMER
118} capture_sampling;
119#endif
120
121#ifdef HAVE_PCAP_REMOTE
122struct remote_host_info {
123 char *remote_host;
124 char *remote_port;
125 capture_auth auth_type;
126 char *auth_username;
127 char *auth_password;
128 bool datatx_udp;
129 bool nocap_rpcap;
130 bool nocap_local;
131};
132
133struct remote_host {
134 char *r_host;
135 char *remote_port;
136 capture_auth auth_type;
137 char *auth_username;
138 char *auth_password;
139};
140
141typedef struct remote_options_tag {
142 capture_source src_type;
143 struct remote_host_info remote_host_opts;
144#ifdef HAVE_PCAP_SETSAMPLING
145 capture_sampling sampling_method;
146 int sampling_param;
147#endif
148} remote_options;
149#endif /* HAVE_PCAP_REMOTE */
150
154typedef struct interface_tag {
155 char *name;
157 char *addresses;
159 char *cfilter;
161 GList *links;
163 bool pmode;
166 bool local;
167 int buffer;
170#ifdef HAVE_PCAP_REMOTE
171 remote_options remote_opts;
172#endif
174 bool selected;
175 bool hidden;
176 /* External capture cached data */
180
184typedef struct link_row_tag {
185 char *name;
186 int dlt;
188
192typedef struct interface_options_tag {
193 char *name;
194 char *descr;
195 char *hardware;
197 char *ifname;
198 char *cfilter;
205 char *extcap;
207 GHashTable *extcap_args;
210 GString *extcap_stderr;
213#ifdef _WIN32
214 HANDLE extcap_pipe_h;
215 HANDLE extcap_control_in_h;
216 HANDLE extcap_control_out_h;
217#endif
223#ifdef HAVE_PCAP_REMOTE
224 capture_source src_type;
225 char *remote_host;
226 char *remote_port;
227 capture_auth auth_type;
228 char *auth_username;
229 char *auth_password;
230 bool datatx_udp;
231 bool nocap_rpcap;
232 bool nocap_local;
233#endif
234#ifdef HAVE_PCAP_SETSAMPLING
235 capture_sampling sampling_method;
236 int sampling_param;
237#endif
241
243typedef struct capture_options_tag {
244 /* general */
245 GList *(*get_iface_list)(int *, char **);
247 GArray *ifaces;
250 GArray *all_ifaces;
255 unsigned num_selected;
256
257 /*
258 * Options to be applied to all interfaces.
259 *
260 * Some of these can be set from the GUI, others can't; setting
261 * the link-layer header type, for example, doesn't necessarily
262 * make sense, as different interfaces may support different sets
263 * of link-layer header types.
264 *
265 * Some that can't be set from the GUI can be set from the command
266 * line, by specifying them before any interface is specified.
267 * This includes the link-layer header type, so if somebody asks
268 * for a link-layer header type that an interface on which they're
269 * capturing doesn't support, we should report an error and fail
270 * to capture.
271 *
272 * These can be overridden per-interface.
273 */
274 interface_options default_options;
275
277 char *save_file;
281
282 /* GUI related */
285 bool restart;
287
288 /* multiple files (and ringbuffer) */
290
299 uint32_t ring_num_files;
301
302 /* autostop conditions */
306
319
323 char *temp_dir;
324
325 /* internally used (don't touch from outside) */
334} capture_options;
335
347extern void
348capture_opts_init(capture_options *capture_opts, GList *(*get_iface_list)(int *, char **));
349
350/* clean internal structures */
351
357extern void
358capture_opts_cleanup(capture_options *capture_opts);
359
369extern int
370capture_opts_add_opt(const char* app_env_var_prefix, capture_options *capture_opts, int opt, const char *ws_optarg);
371
379extern void
380capture_opts_log(const char *domain, enum ws_log_level level, capture_options *capture_opts);
381
390extern void
392
400
401/* print interface capabilities, including link layer types */
410extern int
412 const interface_options *interface_opts,
413 int queries);
414
415/* print list of interfaces */
421extern void
423
424/* trim the snaplen entry */
431extern void
432capture_opts_trim_snaplen(capture_options *capture_opts, int snaplen_min);
433
434/* trim the ring_num_files entry */
440extern void
441capture_opts_trim_ring_num_files(capture_options *capture_opts);
442
443/* pick default interface if none was specified */
451extern int
452capture_opts_default_iface_if_necessary(capture_options *capture_opts,
453 const char *capture_device);
454
461extern void
462capture_opts_del_iface(capture_options *capture_opts, unsigned if_index);
463
469extern void
471
479extern interface_options*
480interface_opts_from_if_info(capture_options *capture_opts, const if_info_t *if_info);
481
487extern void
488collect_ifaces(capture_options *capture_opts);
489
495extern void
497
503extern void
505
506/* Default capture buffer size in Mbytes. */
507#define DEFAULT_CAPTURE_BUFFER_SIZE 2
508
509#ifdef __cplusplus
510}
511#endif /* __cplusplus */
512
513#endif /* __CAPTURE_OPTS_H__ */
514
515/*
516 * Editor modelines - https://www.wireshark.org/tools/modelines.html
517 *
518 * Local variables:
519 * c-basic-offset: 4
520 * tab-width: 8
521 * indent-tabs-mode: nil
522 * End:
523 *
524 * vi: set shiftwidth=4 tabstop=8 expandtab:
525 * :indentSize=4:tabSize=8:noTabs=true:
526 */
interface_type
Represents the type of a capture interface, with explicit integer values that are exposed in the pref...
Definition capture_ifinfo.h:25
int capture_opts_add_opt(const char *app_env_var_prefix, capture_options *capture_opts, int opt, const char *ws_optarg)
Set a command line option value.
void collect_ifaces(capture_options *capture_opts)
Collects network interfaces based on the provided capture options.
struct link_row_tag link_row
Represents a single link-layer type row in the interface link-type selection list.
int capture_opts_print_if_capabilities(if_capabilities_t *caps, const interface_options *interface_opts, int queries)
Prints the capabilities of a network interface.
void capture_opts_init(capture_options *capture_opts, GList *(*get_iface_list)(int *, char **))
caps_query
Bitmask flags selecting which interface capability sets to query from a capture device.
Definition capture_opts.h:396
@ CAPS_QUERY_TIMESTAMP_TYPES
Definition capture_opts.h:398
@ CAPS_QUERY_LINK_TYPES
Definition capture_opts.h:397
void capture_opts_log(const char *domain, enum ws_log_level level, capture_options *capture_opts)
Log the content of capture_opts.
interface_options * interface_opts_from_if_info(capture_options *capture_opts, const if_info_t *if_info)
Collects network interfaces based on the provided capture options.
void capture_opts_trim_ring_num_files(capture_options *capture_opts)
Trims the number of ring buffer files to a valid range.
void capture_opts_list_file_types(void)
Lists available file types for capture options.
struct interface_options_tag interface_options
Holds the full set of configuration options for a single capture interface session.
int capture_opts_default_iface_if_necessary(capture_options *capture_opts, const char *capture_device)
Set the default capture interface if necessary.
void capture_opts_free_interface_t(interface_t *device)
Frees an interface_t element.
void capture_opts_cleanup(capture_options *capture_opts)
Clean up capture options.
void capture_opts_del_iface(capture_options *capture_opts, unsigned if_index)
Deletes an interface from the capture options.
void capture_opts_free_link_row(void *elem)
Frees a link row element.
void interface_opts_free(interface_options *interface_opts)
Free memory allocated for interface options.
void capture_opts_trim_snaplen(capture_options *capture_opts, int snaplen_min)
Trims the snapshot length of a capture options structure to ensure it meets a minimum value.
void capture_opts_print_interfaces(GList *if_list)
Prints a list of available network interfaces.
Definition capture_opts.h:243
bool saving_to_file
Definition capture_opts.h:276
bool stop_after_extcaps
Definition capture_opts.h:328
bool group_read_access
Definition capture_opts.h:278
int32_t file_interval
Definition capture_opts.h:294
bool has_file_interval
Definition capture_opts.h:293
bool multi_files_on
Definition capture_opts.h:289
bool real_time_mode
Definition capture_opts.h:283
bool restart
Definition capture_opts.h:285
double autostop_duration
Definition capture_opts.h:318
int ifaces_err
Definition capture_opts.h:252
bool has_file_duration
Definition capture_opts.h:291
bool has_autostop_files
Definition capture_opts.h:303
bool show_info
Definition capture_opts.h:284
bool has_autostop_filesize
Definition capture_opts.h:313
char * orig_save_file
Definition capture_opts.h:286
char * print_name_to
Definition capture_opts.h:322
GArray * ifaces
Definition capture_opts.h:247
bool has_autostop_duration
Definition capture_opts.h:316
bool use_pcapng
Definition capture_opts.h:279
GArray * all_ifaces
Definition capture_opts.h:250
bool wait_for_extcap_cbs
Definition capture_opts.h:329
int autostop_packets
Definition capture_opts.h:309
int autostop_files
Definition capture_opts.h:305
char * closed_msg
Definition capture_opts.h:331
bool has_autostop_packets
Definition capture_opts.h:307
bool capture_child
Definition capture_opts.h:327
bool has_nametimenum
Definition capture_opts.h:300
bool has_autostop_written_packets
Definition capture_opts.h:310
bool print_file_names
Definition capture_opts.h:320
bool has_file_packets
Definition capture_opts.h:295
unsigned update_interval
Definition capture_opts.h:280
unsigned extcap_terminate_id
Definition capture_opts.h:332
char * temp_dir
Definition capture_opts.h:323
bool output_to_pipe
Definition capture_opts.h:326
filter_list_t * capture_filters_list
Definition capture_opts.h:333
uint32_t ring_num_files
Definition capture_opts.h:299
int file_packets
Definition capture_opts.h:297
char * compress_type
Definition capture_opts.h:330
int autostop_written_packets
Definition capture_opts.h:312
uint32_t autostop_filesize
Definition capture_opts.h:315
bool has_ring_num_files
Definition capture_opts.h:298
char * ifaces_err_info
Definition capture_opts.h:254
char * save_file
Definition capture_opts.h:277
double file_duration
Definition capture_opts.h:292
Represents a list of filters of a specific type.
Definition filter_files.h:65
Describes the capabilities of a single capture interface.
Definition capture_ifinfo.h:46
Describes a single network interface returned by get_interface_list().
Definition capture_ifinfo.h:60
Definition iptrace.c:70
Holds the full set of configuration options for a single capture interface session.
Definition capture_opts.h:192
char * descr
Definition capture_opts.h:194
GPid extcap_pid
Definition capture_opts.h:208
interface_type if_type
Definition capture_opts.h:204
GHashTable * extcap_args
Definition capture_opts.h:207
void * extcap_pipedata
Definition capture_opts.h:209
char * extcap_fifo
Definition capture_opts.h:206
char * extcap_control_in
Definition capture_opts.h:218
unsigned extcap_control_in_watch
Definition capture_opts.h:220
bool monitor_mode
Definition capture_opts.h:222
int optimize
Definition capture_opts.h:199
char * display_name
Definition capture_opts.h:196
bool promisc_mode
Definition capture_opts.h:203
GString * extcap_stderr
Definition capture_opts.h:210
bool has_snaplen
Definition capture_opts.h:200
unsigned extcap_stderr_watch
Definition capture_opts.h:212
int timestamp_type_id
Definition capture_opts.h:239
char * cfilter
Definition capture_opts.h:198
char * name
Definition capture_opts.h:193
int linktype
Definition capture_opts.h:202
char * extcap
Definition capture_opts.h:205
unsigned extcap_stdout_watch
Definition capture_opts.h:211
int snaplen
Definition capture_opts.h:201
char * hardware
Definition capture_opts.h:195
char * extcap_control_out
Definition capture_opts.h:219
char * ifname
Definition capture_opts.h:197
char * timestamp_type
Definition capture_opts.h:238
int buffer_size
Definition capture_opts.h:221
Definition androiddump.c:217
Represents a network interface and its full capture configuration as shown in the UI.
Definition capture_opts.h:154
bool selected
Definition capture_opts.h:174
bool local
Definition capture_opts.h:166
char * cfilter
Definition capture_opts.h:159
GList * links
Definition capture_opts.h:161
bool monitor_mode_enabled
Definition capture_opts.h:168
int optimize
Definition capture_opts.h:160
int active_dlt
Definition capture_opts.h:162
bool hidden
Definition capture_opts.h:175
char * name
Definition capture_opts.h:155
GHashTable * external_cap_args_settings
Definition capture_opts.h:177
int buffer
Definition capture_opts.h:167
if_info_t if_info
Definition capture_opts.h:173
char * addresses
Definition capture_opts.h:157
bool has_snaplen
Definition capture_opts.h:164
bool pmode
Definition capture_opts.h:163
int no_addresses
Definition capture_opts.h:158
char * timestamp_type
Definition capture_opts.h:178
bool monitor_mode_supported
Definition capture_opts.h:169
char * display_name
Definition capture_opts.h:156
int snaplen
Definition capture_opts.h:165