[LinuxUsers] finding traffic

Roger E. Rustad, Jr roger.rustad at gmail.com
Wed Mar 11 15:11:47 UTC 2009


Dante Lanznaster wrote:
> Better yet, leave tcpdump ditching all the traffic into a file, then
> import this file on Wireshark.
> 
> Wireshark supports importing multiple packet dump formats, including
> libpcap and tcpdump.

Ditto

Also, you might port mirror the port on the switch.  That way, your 
laptop will see everything on the wire, as if everything was plugged 
into a hub.

e.g.

http://en.wikipedia.org/wiki/Port_mirroring



More information about the LinuxUsers mailing list