

Edgeshark
Discover and capture container network traffic from your comfy desktop Wireshark, using a containerized service and a Wireshark plugin.
Cost / License
- Free
- Open Source
Platforms
- Self-Hosted
- Docker
- Windows
- Linux
- Mac
Features
Properties
- Privacy focused
Features
- Ad-free
- Dark Mode
- No Tracking
- Docker Monitoring
- Container monitoring
- REST API
Tags
- podman
- websocket
- wireshark
- containerd
- network-traffic
- Packet Sniffer
- network-visualization
Edgeshark News & Activities
Recent activities
Edgeshark information
What is Edgeshark?
Edgeshark visualizes the communication of containers and thus helps in diagnosing it, both in-between containers as well as with the "outside world". It can be deployed to Linux stand-alone container hosts, including KinD deployments. Edgeshark also supports capturing container traffic using Wireshark. Another natural habitat of Edgeshark are Siemens Industrial Edge devices.
Features:
The general idea of Edgeshark is to display the real system state, and not some engineered configuration data from somewhere on disk.
Alas, Edgeshark features:
- UI with light/dark theme switcher (in settings) and integrated multi-chapter help (accessible through side bar, click or tap on menu symbol).
- a "wiring" view of the (virtual) network data-link layer.
- detail views for individual app containers or the host:
-
- IP and MAC address, as well as IP routing configuration of host and app containers.
-
- DNS configuration of host and app containers, including online validation.
- filtering the containers/network namespaces displayed (Ctrl+f or /).
- the open & forwarded host ports.
- system information about host OS and Industrial Edge runtime.
- (experimental) shows IE App icons for quick visual identification. (needs to be enabled in Settings first)
- integrated screenshot function for easy documentation.
- bookmarkable views.
- full IPv4/IPv6 dual stack awareness and support.
- no modification of containers needed in order to capture their network traffic.
- live network packet capture streaming in well-established pcapng "quasi standard" format.
- enhanced capture meta data showing the correct app container name (as opposed to unique ID) and correct IED host name.
- remote capture with app container-awareness that can be started just with a click/touch from the UI.
- REST/websocket service API for discovery and capture.
... and finally: Edgeshark is powered by ghosts, not spectres, lately also with the help of some weird Gophers wearing blankets, for whatever reason.






