<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://devzone.nordicsemi.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/f/nordic-q-a/97175/nrf-sniffer-not-capturing-packets-after-connection</link><description>I&amp;#39;m new to nRF Sniffer. Just installed it and the installation seemed to go as expected. I see my device in the device list when it is advertising. After I select the device I can still see advertisement packets. However, when the peripheral is connected</description><dc:language>en-US</dc:language><generator>Telligent Community 13</generator><lastBuildDate>Thu, 01 Feb 2024 14:22:32 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://devzone.nordicsemi.com/f/nordic-q-a/97175/nrf-sniffer-not-capturing-packets-after-connection" /><item><title>RE: nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/thread/467195?ContentTypeID=1</link><pubDate>Thu, 01 Feb 2024 14:22:32 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:cdf38c1c-86a8-48ce-8448-4e5b9d94e126</guid><dc:creator>Szwed</dc:creator><description>&lt;p&gt;Hi, I&amp;#39;d like to report, that this problem still exists.&lt;/p&gt;
&lt;p&gt;I&amp;#39;ve tested it and I have the same problem.&lt;/p&gt;
&lt;p&gt;If I use nRF52840 Dongle as a sniffer and nRF52832-DK as &amp;quot;nRF Connect for Desktop&amp;quot; device. With this combination I can see ADV_IND, SCAN_REQ, SCAN_RSP and CONNECT_IND packets, but nothing more. In wireshark&amp;#39;s combo box &amp;quot;Device&amp;quot; I can see options: all advertising devices, follow IRK, but that&amp;#39;s all. If I try to connect using &amp;quot;nRF Connect for Desktop&amp;quot; tool, advertising ADV_IND stops and CONNECT_IND packet is shown. If I disconnect, then advertising resumes.&lt;/p&gt;
&lt;p&gt;What is funny: If I switch the devices, so DK kit is a sniffer and a dongle is used to connect, then I can see all connection packets (GAP, GATT, empty PDU...). Wireshark&amp;#39;s combo box contains more options as just 2 I&amp;#39;ve listed above.&lt;/p&gt;
&lt;p&gt;All software and firmware is up to date, freshly installed today. Running on Win 10.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/thread/412952?ContentTypeID=1</link><pubDate>Thu, 02 Mar 2023 10:19:29 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:034f3f10-4c0c-48cf-a895-d42e31372586</guid><dc:creator>Menon</dc:creator><description>&lt;p&gt;Hello,&lt;/p&gt;
&lt;p&gt;Yes, &lt;a href="https://www.wireshark.org/docs/wsug_html_chunked/ChBuildInstallOSXInstall.html"&gt;ChmodBPF&amp;nbsp; need to be installed for capturing packets by Wireshark&lt;/a&gt;&amp;nbsp;in macOS. I am wondering why this only happened after establishing the connection.&lt;/p&gt;
&lt;p&gt;Anyhow Glad to hear that it resolved your issue.&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;Kind Regards,&lt;/p&gt;
&lt;p&gt;Abhijith&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/thread/412864?ContentTypeID=1</link><pubDate>Thu, 02 Mar 2023 01:59:58 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:b223fed7-17b0-4446-9e3b-7f3c45c6cea1</guid><dc:creator>denis</dc:creator><description>&lt;p&gt;It started working. &amp;nbsp;Not totally sure why. &amp;nbsp;But I did install&amp;nbsp;&lt;span&gt;ChmodBPF. &amp;nbsp;From what it said, I assumed that was&amp;nbsp;only needed to capture packets in the OS. &amp;nbsp;But maybe that is needed for the BLE sniffer also?&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/thread/412854?ContentTypeID=1</link><pubDate>Wed, 01 Mar 2023 23:17:54 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:3056f165-5254-4788-8e70-b46687a8c4d9</guid><dc:creator>denis</dc:creator><description>&lt;p&gt;&lt;span&gt;Correct, I can see advertising packets after filtering. &amp;nbsp;But when I connect I just see a single CONNECT_IND in wire shark and&amp;nbsp;that&amp;#39;s it.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;I believe&amp;nbsp;I followed everything in&amp;nbsp;the nRF sniffers documentation.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;This is the /tmp/logs/log.txt output:&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: Software version: 4.1.1&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: sniffer started&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: starting scan&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: Scan flags: 0b11&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: Sent TK to sniffer: [0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0]&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: scanning started&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: defaults written&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: control loop&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: Firmware version 4.1.1&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:04:43 (-0600) INFO: Firmware timestamp 35287739 reference: Mar 01 2023 17:04:43.619431 CST&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:09:55 (-0600) INFO: Clearing&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:11:32 (-0600) INFO: follow_device: [b'225', b' 187', b' 34', b' 69', b' 21', b' 200', b' 1']&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:11:32 (-0600) INFO: Sniffing device 14 - &amp;quot;&amp;quot;&amp;quot;&amp;quot;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:11:32 (-0600) INFO: Follow flags: 0b0&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;01-Mar-2023 17:11:33 (-0600) INFO: Following e1:bb:22:45:15:c8&lt;span class="Apple-converted-space"&gt;&amp;nbsp; &lt;/span&gt;random&lt;span class="Apple-converted-space"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: nRF Sniffer not capturing packets after connection</title><link>https://devzone.nordicsemi.com/thread/412772?ContentTypeID=1</link><pubDate>Wed, 01 Mar 2023 13:57:46 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:a7c86f48-88bb-4a31-aab7-cb57a467018c</guid><dc:creator>Menon</dc:creator><description>&lt;p&gt;Hello,&lt;/p&gt;
&lt;p&gt;AFAIK, there is nothing more to be done for capturing the packets. So you are able to see the advertising packets after device filtering (by choosing your device in Wireshark) but not able to see the packets after connection is established?&lt;/p&gt;
&lt;p&gt;Did you follow everything mentioned in&lt;a href="https://infocenter.nordicsemi.com/topic/ug_sniffer_802154/UG/sniffer_802154/intro_802154.html"&gt; nRF sniffers section&lt;/a&gt;? Could you share sniffer_log for getting more idea on this?&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;Kind Regards,&lt;/p&gt;
&lt;p&gt;Abhijith&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>