08-05-2015
In order to know a packet is not for it, it reads the destination mac address in the frame. You are in promiscuous mode so interface will accept all frames regardless of destination, reconstitute to a packet and send to cpu
9 More Discussions You Might Find Interesting
1. Programming
I have two net-card. one is 172.16.24.99(ENG) ,another is 172.16.25.99(ENG-B). Both masks is 255.255.255.0.
I will monitor data on the tcp port 8055 in ENG, How do I set option of tcpdump command (2 Replies)
Discussion started by: chenhao_no1
2 Replies
2. UNIX for Dummies Questions & Answers
does anybody know what the -d -dd and -ddd options are used for ?
thanks (2 Replies)
Discussion started by: ant04
2 Replies
3. IP Networking
Hi, I got the following question regarding tcpdump and I would appreciate your help/feedback:
--Scenario
I am instructed to capture the network traffic by getting the tcpdump data/files of our network for every hour.
--Problem
Some of the connections are still open when the capture is done... (1 Reply)
Discussion started by: jinsunnyvale
1 Replies
4. Cybersecurity
i would like to know about tcpdump
i would like to use tcpdump to get information about these
- Date
- time
- source hostname
- source mac address
- source ip address
- destination ip address
- see outbound only
then i use command like this
tcpdump -i le0 -n -q -tttt -e src net... (0 Replies)
Discussion started by: chamnanpol
0 Replies
5. IP Networking
i would like to know about tcpdump
i would like to use tcpdump to get information about these
- Date
- time
- source hostname
- source mac address
- source ip address
- destination ip address
- see outbound only
then i use command like this
tcpdump -i le0 -n -q -tttt -e src net... (2 Replies)
Discussion started by: chamnanpol
2 Replies
6. Linux
Hi,
I want to capture TCPDUMP of traffic, I tried doing this but did not find success..can anyone plz correct it.
# tcpdump -s0 -vv -w /home/osuresh/test_tcp_dump host 10.12.10.22 && port 161
bash: tcpdump: command not found
# tcpdump -s0 -vv -w /home/osuresh/test_tcp_dump host... (5 Replies)
Discussion started by: sureshcisco
5 Replies
7. UNIX for Dummies Questions & Answers
Hi Everyone,
anyone face "tcpdump -i any" does not work? i mean if i use -i eth0, can capture eth0, or use -i eth1 also can. but then tcpdump -i any, seems cannot capture packets. :confused:
please advice, thanks (2 Replies)
Discussion started by: jimmy_y
2 Replies
8. Shell Programming and Scripting
I'm new to the Unix/Linux world. I have taken classes and played with a few simple scripts but never had a real world application. Here is my problem.
What I need to do is every 15min between 8am and 5pm, run
tcpdump -s 2000 -w flowroute-0000.pcap
where the "0000" is the current time.
... (4 Replies)
Discussion started by: Nasasdge
4 Replies
9. Debian
Hi.
Need Help with TcpDump
Trying to sniff associatio-request with tcpdump but when i run this tcpdump -i eth0 wlan subtype assoc-req i get this error
can anyone help me with this error ? Thanks alot !!:) (1 Reply)
Discussion started by: SoulZB
1 Replies
LEARN ABOUT NETBSD
srtconfig
SRTCONFIG(1) BSD General Commands Manual SRTCONFIG(1)
NAME
srtconfig -- configure srt interfaces
SYNOPSIS
srtconfig srtX
srtconfig srtX N
srtconfig srtX del N
srtconfig srtX add srcaddr mask dstif dstaddr
srtconfig srtX set N srcaddr mask dstif dstaddr
DESCRIPTION
srtconfig configures, or queries the configuration of, srt(4) interfaces. An srt(4) interface parcels packets out to other interfaces based
on their source addresses (the normal routing mechanisms handle routing decisions based on destination addresses). An interface may have any
number of routing choices; they are examined in order until one matching the packet is found. The packet is sent to the corresponding inter-
face. (Any interface, even another srt interface, may be specified; if the configurations collaborate to cause a packet to loop forever, the
system will lock up or crash.)
When run with only one argument, srtconfig prints the settings for the specified interface.
When run with two arguments, srtconfig prints the settings for the routing choice whose number is given as the second argument.
The form with 'del' deletes a routing choice, identified by its number. Other choices with higher numbers, if any, will be renumbered
accordingly.
The 'add' form adds a choice; the other arguments describe it, and are documented below. The new choice is added at the end of the list.
The 'set' form replaces an existing choice, given its number. The other arguments describe the new choice which is to replace whatever cur-
rently exists at the given number N.
A choice is described by four pieces of information: a source address and mask, which are used to determine which choice an outgoing packet
uses, a destination interface, and a destination address for the new interface. The source address and mask are specified like any Internet
addresses (for convenience, the mask may instead be specified as a '/' followed by a small integer, CIDR-style; note that in this case the
mask must still be a separate argument; it cannot be appended to the end of the source address argument).
Each srt interface also has ordinary source and destination addresses which are set with ifconfig(8) like any other interface; these should
not be confused with any of the above.
AUTHORS
der Mouse <mouse@rodents.montreal.qc.ca>
BSD
August 21, 2000 BSD