How To Install libndpi-wireshark on Kali Linux
Introduction
In this tutorial we learn how to install libndpi-wireshark on Kali Linux.
What is libndpi-wireshark
libndpi-wireshark is:
nDPI is a ntop-maintained superset of the popular OpenDPI library. Released under the LGPL license, its goal is to extend the original library by adding new protocols that are otherwise available only on the paid version of OpenDPI.
nDPI has also been modified to be suitable for traffic monitoring applications, by disabling specific features that slow down the DPI engine while being them un-necessary for network traffic monitoring.
With nDPI, it is possible to both detect known protocols on non-standard ports (e.g. detect http non ports other than 80), and also the opposite.
This package contains the wireshark dissector based on nDPI. The dissector is installed in the plugin directory for the current wireshark version.
There are three methods to install libndpi-wireshark on Kali Linux. We can use apt-get, apt and aptitude. In the following sections we will describe each method. You can choose one of them.
Install libndpi-wireshark Using apt-get
Update apt database with apt-get using the following command.
sudo apt-get updateAfter updating apt database, We can install libndpi-wireshark using apt-get by running the following command:
sudo apt-get -y install libndpi-wiresharkInstall libndpi-wireshark Using apt
Update apt database with apt using the following command.
sudo apt updateAfter updating apt database, We can install libndpi-wireshark using apt by running the following command:
sudo apt -y install libndpi-wiresharkInstall libndpi-wireshark Using aptitude
If you want to follow this method, you might need to install aptitude on Kali Linux first since aptitude is usually not installed by default on Kali Linux. Update apt database with aptitude using the following command.
sudo aptitude updateAfter updating apt database, We can install libndpi-wireshark using aptitude by running the following command:
sudo aptitude -y install libndpi-wiresharkHow To Uninstall libndpi-wireshark on Kali Linux
To uninstall only the libndpi-wireshark package we can use the following command:
sudo apt-get remove libndpi-wiresharkUninstall libndpi-wireshark And Its Dependencies
To uninstall libndpi-wireshark and its dependencies that are no longer needed by Kali Linux, we can use the command below:
sudo apt-get -y autoremove libndpi-wiresharkRemove libndpi-wireshark Configurations and Data
To remove libndpi-wireshark configuration and data from Kali Linux we can use the following command:
sudo apt-get -y purge libndpi-wiresharkRemove libndpi-wireshark configuration, data, and all of its dependencies
We can use the following command to remove libndpi-wireshark configurations, data and all of its dependencies, we can use the following command:
sudo apt-get -y autoremove --purge libndpi-wiresharkDependencies
libndpi-wireshark have the following dependencies:
References
Summary
In this tutorial we learn how to install libndpi-wireshark package on Kali Linux using different package management tools: apt, apt-get and aptitude.