Using Wireshark under Bootcamp Windows XP
I have a Windows XP bootcamp installation on my MacBook Pro that I sometimes boot into to do some network troubleshooting. I have discovered that when using Wireshark (as well as Fluke Networks Clearsight Analyzer), the packet captures only collect packets sent from the device being monitored...no receive packets are captured.
For example, a trace of another workstation pinging the monitored station only has the ECHO replies. Again, this happens with two different packet capture tools.
If I boot into OSX and run the Mac version of Wireshark, the captures include all packet data, so I suspect the issue is with the current Windows NIC driver.
I am not running VM or Parallels for the Bootcamp partition, I am booting into Windows XP. I have verified that no filters are being used with either packet capture program as well.
Is anyone else using or have tried using Wireshark under Bootcamp?
Thanks,
Ray
MacBook Pro, Windows XP