grimoire

personal wiki
git clone git://git.pyratebeard.net/grimoire.git
Log | Files | Refs

tcpdump.md (494B)


      1 # tcpdump
      2 
      3 ## capture entire packet
      4 ```
      5 tcpdump -nnvvXSs 1514 -i eth0
      6 ```
      7 - nn : don't convert hostnames or port names
      8 - vv : verbosity level
      9 - X  : payload. shows packet contents in both ASCII and HEX
     10 - S  : prints absolute sequence numbers
     11 - s  : set snaplen (in this case 1514)
     12 
     13 ## read entire packet
     14 ```
     15 tcpdump -qns 0 -A -r <filename>
     16 ```
     17 - q  : quiet
     18 - n  : don't convert host names
     19 - s  : set snaplen (0 means catch whole packets)
     20 - A  : print each packet in ASCII
     21 - r  : read from file