On 9/23/25 12:08, CAREY SCHUG wrote:
I assumed wireshark wouild use promiscuous mode and record everything that went to/from comcast, no?
Only if it's in a position to see all the traffic. I got the impression there were multiple computers on your network. That implies a switch, which prevents a computer on one switch port from seeing traffic from another. You will need to use a data tap between that switch and the modem to intercept all the traffic. Here are instructions for making one: https://forum.netgate.com/topic/144521/creating-a-data-tap?_=1732217084711 I used a 1 Gb switch, but these days you might want to get a faster one, depending on how fast your Internet connection is. BTW, years ago, before I switched to pfSense, I used Linux for my router and could run Wireshark on it.