How To Install libndpi-wireshark on Ubuntu 18.04

In this tutorial we learn how to install libndpi-wireshark on Ubuntu 18.04. libndpi-wireshark is extensible deep packet inspection library - wireshark dissector

Introduction

In this tutorial we learn how to install libndpi-wireshark on Ubuntu 18.04.

What is libndpi-wireshark

libndpi-wireshark is:

nDPI is a ntop-maintained superset of the popular OpenDPI library. Released under the LGPL license, its goal is to extend the original library by adding new protocols that are otherwise available only on the paid version of OpenDPI.

nDPI has also been modified to be suitable for traffic monitoring applications, by disabling specific features that slow down the DPI engine while being them un-necessary for network traffic monitoring.

With nDPI, it is possible to both detect known protocols on non-standard ports (e.g. detect http non ports other than 80), and also the opposite.

This package contains the wireshark dissector based on nDPI. The dissector is installed in the plugin directory for wireshark version 2.4.3.

There are three methods to install libndpi-wireshark on Ubuntu 18.04. We can use apt-get, apt and aptitude. In the following sections we will describe each method. You can choose one of them.

Install libndpi-wireshark Using apt-get

Update apt database with apt-get using the following command.

sudo apt-get update

After updating apt database, We can install libndpi-wireshark using apt-get by running the following command:

sudo apt-get -y install libndpi-wireshark

Install libndpi-wireshark Using apt

Update apt database with apt using the following command.

sudo apt update

After updating apt database, We can install libndpi-wireshark using apt by running the following command:

sudo apt -y install libndpi-wireshark

Install libndpi-wireshark Using aptitude

If you want to follow this method, you might need to install aptitude first since aptitude is usually not installed by default on Ubuntu. Update apt database with aptitude using the following command.

sudo aptitude update

After updating apt database, We can install libndpi-wireshark using aptitude by running the following command:

sudo aptitude -y install libndpi-wireshark

How To Uninstall libndpi-wireshark on Ubuntu 18.04

To uninstall only the libndpi-wireshark package we can use the following command:

sudo apt-get remove libndpi-wireshark

Uninstall libndpi-wireshark And Its Dependencies

To uninstall libndpi-wireshark and its dependencies that are no longer needed by Ubuntu 18.04, we can use the command below:

sudo apt-get -y autoremove libndpi-wireshark

Remove libndpi-wireshark Configurations and Data

To remove libndpi-wireshark configuration and data from Ubuntu 18.04 we can use the following command:

sudo apt-get -y purge libndpi-wireshark

Remove libndpi-wireshark configuration, data, and all of its dependencies

We can use the following command to remove libndpi-wireshark configurations, data and all of its dependencies, we can use the following command:

sudo apt-get -y autoremove --purge libndpi-wireshark

References

Summary

In this tutorial we learn how to install libndpi-wireshark package on Ubuntu 18.04 using different package management tools: apt, apt-get and aptitude.