Tshark

From DWIKI

packet captures on the command-line

Links

FAQ

Show DNS requests

tshark -d udp.port==53,dns