Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > comp.os.linux.networking > #1209
| From | Ralph Spitzner <rasp@spitzner.org> |
|---|---|
| Newsgroups | comp.os.linux.networking |
| Subject | Re: documentation for tcpdump |
| Date | 2012-03-25 09:22 +0200 |
| Organization | Hanswurst & Kaspar Hauser Ltd. |
| Message-ID | <2nt249-4eg.ln1@spitzner.org> (permalink) |
| References | <4f6ebc0b$1@x-privat.org> |
ghand wrote:
> there are three different kinds of qualifier.
> type, dir, proto
>
> When I go to the man page, I don't see the word "qualifier"
>
> The man page does not mention the keyword portrange
> But it is mentioned here
> http://www.msamir.net/the-art-of-network-debugging-with-tcpdump/
Are you referring to:
expression
selects which packets will be dumped. If
no expression is given, all packets on the net will
be dumped.
Otherwise, only packets for which expression is `true'
will be dumped.
For the expression syntax, see pcap-filter(7).
???
-rasp
--
See why I hate Windows users?
All pain, no gain.
-Howard Chu
Back to comp.os.linux.networking | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
documentation for tcpdump "ghand" <ghand45@hotmail.com> - 2012-03-25 08:32 +0100
Re: documentation for tcpdump Ralph Spitzner <rasp@spitzner.org> - 2012-03-25 09:22 +0200
Re: documentation for tcpdump "ghand" <ghand45@hotmail.com> - 2012-03-25 10:00 +0100
csiph-web