Wireshark the best friend for network engineers
July 18, 2019

Overall Satisfaction with Wireshark

Wireshark is being used widely in my organization especially in network engineering and operation teams. It's being used for multiple purposes in network design, testing, operation, and troubleshooting.
  • Wireshark is easy to use, the user can customize the display layout of the packet based on the user's own interests to only highlight the network layers and parameters being cared about.
  • There are plenty of integrated/embedded tools inside Wireshark can be used to perform deep analysis of the different type of network issues.
  • Filter and search functionality are so powerful which can be helpful for network issue troubleshooting.
  • It's better to integrate some APIs to the high-level users allowing them to design and program their own deep analysis functions to support the work.
  • it's better to optimize the algorithm processor a little bit as I will normally have trouble to open a big size packet capture larger than 3GB, the computer will become very slow and take a very long time to open the file and perform any analysis.
  • Wireshark is the most important tool for any network engineer like me to perform the daily work. One of the examples is to troubleshoot the network issues raised from customer complain, helps to narrow down the root cause the get the issue fixed.
I haven't found another product can perform the same functionality as Wireshark. There are some similar products such as Microsoft Message Analyzer and others, but Wireshark is the only choice and mandatory for any network engineer.
I use Wireshark nearly every day, it's the most important tool in my daily work as a network engineer to troubleshoot the real network problem in the production network. It helps me to look into the problematic protocol scenarios in the packet layer to understand where is the problem and how to fix.