Tcpdump: Difference between revisions

From DWIKI
mNo edit summary
 
Line 19: Line 19:
Try adding interface (-i)
Try adding interface (-i)


==tcpdump: Mask syntax for networks only==
To match a subnet use '''net''' instead of '''host'''


[[Category:Networking]]
[[Category:Networking]]

Latest revision as of 08:32, 5 July 2023

Docs

Tools

  • wireshark

FAQ

human readable output

tcpdump -lnX


look for host and port

tcpdump -i ens192 host 192.168.101.3 and tcp port 993


tcpdump: NFLOG link-layer type filtering not implemented

Try adding interface (-i)


tcpdump: Mask syntax for networks only

To match a subnet use net instead of host