Install a packet log viewing program to be used in conjunction with the Attack Log interface. Your packet log viewer, also known as a protocol analyzer, must support library packet capture (libpcap) format. This viewing program must be installed on each client you intend to use to remotely log onto the Manager to view packet logs.
Wireshark (formerly known as Ethereal) is recommended for packet log viewing. Wireshark is a network protocol analyzer for Windows servers that enables you to examine the data captured by your Trellix IPS Sensors. For more information on downloading and using Wireshark, go to www.wireshark.org.
Note
Installation of third-party applications is not supported in the Linux based Manager.