Wireshark-users: Re: [Wireshark-users] Sniffing1GigE interfaces without laptop crashing

From: Stephen Fisher <steve@xxxxxxxxxxxxxxxxxx>
Date: Thu, 1 Dec 2011 10:22:10 -0700
On Sun, Nov 20, 2011 at 06:23:12PM +0200, Kasper Adel wrote:

> 4) Capture into a file and not to memory

As Guy said, Wireshark always captures to a file.  However, it also 
keeps a lot of things in memory like reassembled packet streams and 
information from previous packets that may help dissect future packets.  
You could turn off features like this, or even disable protocols you're 
not interested in.