Wireshark & diagnostics · Video guide

How to Filter Traffic // Intro to Wireshark Tutorial // Lesson 5

Chris Greer12:48Published May 25, 2021Foundational

The player loads only when you choose Watch here. Playback uses YouTube’s privacy-enhanced embed; YouTube processes playback data.

Why this is useful

Shows how to distinguish capture filters from display filters, then progressively narrow a conversation without losing sight of the evidence.

Applicability

Version-specific

The 2021 interface is older. Use current Wireshark syntax alongside the demonstration.

Keep in mind

  • Current set-membership filters use commas, for example tcp.port in {80, 443, 8080}; the video shows an older form.
  • A capture filter of port 53 matches TCP as well as UDP. Encrypted DNS and TLS privacy features can hide names shown in older examples.

Before you watch

Read the linked introduction, then use the video to reinforce the explanation.

Editorial review Sep 7, 2026. Review used the complete available transcript and primary references; audio and screen readability remain unverified.