Filter by process/PID in Wireshark

wireshark

Is there a way to filter/follow a TCP/SSL stream based on a particular process ID using Wireshark?

Best Answer

Just in case you are looking for an alternate way and the environment you use is Windows, Microsoft's Network Monitor 3.3 is a good choice. It has the process name column. You easily add it to a filter using the context menu and apply the filter.. As usual the GUI is very intuitive...