Try our new research platform with insights from 80,000+ expert users

SolarWinds NetFlow Traffic Analyzer vs Wireshark comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

SolarWinds NetFlow Traffic ...
Average Rating
7.6
Reviews Sentiment
6.8
Number of Reviews
40
Ranking in other categories
Network Traffic Analysis (NTA) (5th)
Wireshark
Average Rating
9.0
Reviews Sentiment
7.7
Number of Reviews
63
Ranking in other categories
Network Troubleshooting (3rd)
 

Mindshare comparison

While both are Network Management solutions, they serve different purposes. SolarWinds NetFlow Traffic Analyzer is designed for Network Traffic Analysis (NTA) and holds a mindshare of 5.6%, down 7.0% compared to last year.
Wireshark, on the other hand, focuses on Network Troubleshooting, holds 13.1% mindshare, down 13.2% since last year.
Network Traffic Analysis (NTA)
Network Troubleshooting
 

Featured Reviews

DeepakVyas - PeerSpot reviewer
Utilization alerts enhance monitoring with good alerts
The tool itself is very complicated, so training is required to handle it effectively. Configuration and the streamlining process are very complex. In my view, it is a good product if properly configured and streamlined according to your IT infrastructure. For enterprise-level organizations, SolarWinds is more appropriate than for small and medium enterprises. I would rate the solution eight out of ten.
DonniUgalde - PeerSpot reviewer
Provides visibility into the network, and the GUI is easy to use
I wish the filters were a little bit more prepopulated. It would have been easy to hit a drop-down and select a filter. If I only wanted to look at DCP, UDP, or IP, it would be easy to filter it out. Advanced network knowledge is required to get a lot out of the tool. However, it's very easy to install and deploy. It would be nice if there were some handheld Android devices with a Wireshark-specialized application that would allow us to mirror a Cisco port. Then, we can just plug into the port and click the green start button, and it will start ingesting the packet capture. Then, we won’t be using a laptop. The only downside is that we must have a laptop and connect a network cable. Some new laptops don't have network ports, so we have to get another adapter. Having an all-in-one device, like NetAlly or Fluke, and some of their network devices would be cool.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The bandwidth indicates the utilization of the devices; if any issue occurs, it triggers an alert for me."
"The integration with other SolarWinds products is good."
"I would rate NetFlow Traffic Analyzer's stability ten out of ten."
"I like that it is able to monitor multiple devices and it's vendor-agnostic."
"The dashboard alerts me when a critical device goes off the network."
"This solution gives us important information about the utilization of protocols, particularly in terms of how often they are used."
"The software management tools are very useful for our customers."
"NTA's most valuable feature is traffic analysis and visibility."
"Wireshark's best feature is that it's adaptive, which means it's the go-to tool for network-related developers."
"It helps in analyzing if something looks suspicious, such as a brute force attack or scanning from somewhere."
"The drill-down available for packet analysis is great. It gives a network security engineer insight into what is going on at the packet level and enables better troubleshooting."
"Being able to dissect email data and figure out what is inside email messages was the most valuable feature. Such a feature is pretty helpful for an ongoing forensic investigation or when there is a potential insider threat that you are trying to investigate. It allows you to see the network activity of the users you are investigating. It also gives you more visibility into your network. It was very easy to set up. There is a lot of information out there on Google and YouTube about how to use it. There is also community support. If you have any trouble, it is pretty easy to find an answer online. You will have to do some digging only if you have a very specific use case."
"The most valuable feature of Wireshark is the ability to choose a destination of flow that has not been working as expected."
"I have found the most valuable feature you can design your sniffer the way you want to."
"It has a good syntax to put the commands in and get information out of."
"It's easy to troubleshoot issues because there's a large online community."
 

Cons

"If your network is on SolarWinds, and you notice that the traffic is bad because it says "user downloading a heavy file," it doesn't indicate which endpoint is downloading those heavy files. SolarWinds doesn't have the tools to be able to handle this kind of situation. You can just notice through your network device that the traffic is becoming overwhelming or heavy, but you cannot go inside and get more details related to the endpoint where it is happening. We would like SolarWinds to be able to handle this kind of situation and even manage the traffic inside a network from the endpoint to the network device. These would be good enhancements. It is mostly stable. The problem comes only when we want to add another SolarWinds model. SolarWinds has so many models, and sometimes when we want to add other models on the platforms that are reserved for our firm, it freezes. When this happens, we have to create a new VM for that model."
"Currently, it shows only the top ten applications or ports in use, while the remaining data appears as 'remaining traffic,' causing confusion."
"It is very slow to pick the dynamics of the network."
"I'm expecting to see a little bit more artificial intelligence and machine learning algorithms. They need a bit more sophistication in that."
"The plotting of the device on the map is not appropriate."
"Currently, it shows only the top ten applications or ports in use, while the remaining data appears as 'remaining traffic,' causing confusion."
"The analysis can utilize algorithms like K-means clustering or associative neural networks for predictions rather than relying on generative AI, which is more suited for text."
"I would like to see more training videos and additional material for learning how to use this solution."
"Wireshark is similar to an OS defense tool, meaning that it runs on an OS such as Ubuntu and Fedora, but I'm unsure if it's compatible with Windows or if it's a straightforward process to run it on Windows. Right now, my team needs to run Wireshark from a dongle to use it, so it's an OS-dependable tool, and that's an area for improvement. I was unable to use Wireshark on Windows, and I couldn't capture it, as I'm unsure how to configure the wireless card into monitoring mode on Windows. The process was straightforward on Linux, but it wasn't the case on Windows OS. It seems Wireshark isn't compatible with all OS. For example, you can analyze the log, and you can analyze it on the Windows server, but you can't do a capture in Windows. Configuring Wireshark for Windows isn't as easy as configuring it for Linux."
"Wireshark is restricted when any sort of encryption is involved, such as XSL encryption or DLX."
"The product has been using the same GUI for many years."
"I wish the filters were a little bit more prepopulated."
"The speed of the Internet could be improved, especially its performance."
"A room for improvement in Wireshark is its ease of use for beginners. It could be better. Another room for improvement in the tool is for it to provide more details about the traffic load. At the moment, Wireshark is adequate for me, so there isn't anything I'd like added to it in its next version."
"Big trace files (more than 1,000,000 packets) can be slow, but then you can use "TraceWrangler" (also free) to help with slicing and dicing the data."
"The initial setup depends upon the basics. You need to have a clear understanding of the basics."
 

Pricing and Cost Advice

"The licensing for this solution is based on the number of nodes."
"We have licenses for SolarWinds NetFlow Traffic Analyzer. In terms of pricing, its license is not that expensive versus other tools such as HP."
"We pay yearly, and we are happy with its price."
"NetFlow Traffic Analyzer is reasonably priced."
"The pricing is reasonable."
"SolarWinds' pricing structure is the primary reason why some customers opt for another solution such as ManageEngine NetFlow Analyzer. In NTA, you are charged per port, meaning that if you have a 24-port switch you will be charged for 24 individual nodes. ManageEngine NetFlow Analyzer, on the other hand, charges per switch, such that if you add a switch, the entire switch will count as one single node."
"For our environment, we pay approximately $25,000 USD yearly."
"The solution's licensing is high-priced."
"The solution is open source so is free."
"Wireshark is an open-source product, so it's free to use."
"We are using a freeware version of this solution, so there are no licence costs involved."
"Wireshark is open-source and free of charge."
"This is an open-source product that can be used free of charge."
"It is free to download and install. It runs on multiple platforms, so how can you go wrong?"
"The tool is free."
"Wireshark is free software, so you can download it and use it for free with no licensing fees."
report
Use our free recommendation engine to learn which Network Traffic Analysis (NTA) solutions are best for your needs.
838,713 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Educational Organization
72%
Computer Software Company
4%
Financial Services Firm
3%
Manufacturing Company
3%
Computer Software Company
11%
University
10%
Government
10%
Financial Services Firm
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
 

Questions from the Community

What is the best network monitoring software for large enterprises?
I have worked from 1973 with all kind of systems in large enterprises across the world. And have experience with all kind of software in monitoring from infra to end to end, it depends on the funct...
What needs improvement with SolarWinds NetFlow Traffic Analyzer?
The plotting of the device on the map is not appropriate. It should be like a Meraki cloud, where if you are familiar with Meraki devices, you can locate any device directly on the world map.
What is your experience regarding pricing and costs for Wireshark?
Wireshark is priced at a medium range, not too high, not too low. The pricing could be more flexible, and they might make it more expensive. That said, compared to other products, it is competitive.
What needs improvement with Wireshark?
The speed of the Internet could be improved, especially its performance. Performance can sometimes be a challenge due to numerous factors.
 

Also Known As

Netflow Traffic Analyzer
No data available
 

Overview

 

Sample Customers

Oceaneering International, Asia Pacific Network Information Centre, 335th Signal Command, Immofori
Comversion, ADP, Talbots
Find out what your peers are saying about Darktrace, Auvik, Cisco and others in Network Traffic Analysis (NTA). Updated: February 2025.
838,713 professionals have used our research since 2012.