LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 08-25-2010, 08:52 AM   #1
strider82
LQ Newbie
 
Registered: Apr 2009
Location: USA
Distribution: Debian, Ubuntu
Posts: 7

Rep: Reputation: 0
Packet payload from pcap files


Hello,

As part of a research experiment, we need to use a web proxy and direct certain users from their computers through that web-proxy. Given that we do not have access to DHCP logs (this is on a college campus), we have asked each user to go through the proxy using a different port number so we can differentiate between them. Now as a result of doing this, the entire TCP packet is encapsulated as payload data within the captured packet (using tshark to capture the packets). Now I need to be able to parse the payload for statistics including the URL. I am not sure how best to proceed. I cannot find a utility that will just output the payload and then I can probably parse the output. Any pointers?

Thanks,
 
Old 08-26-2010, 06:05 PM   #2
spokz
LQ Newbie
 
Registered: May 2008
Location: Poland
Distribution: Debian
Posts: 13

Rep: Reputation: 0
So You probably need a filter that catch the URLs. In Wireshark it would be sth like ' http == givenaddress.com '.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Difference between FTP payload Data and simply chopping a file into payload size ahm_irf Programming 1 11-07-2007 09:58 AM
need to extract payload from the tcp packet ahm_irf Programming 1 07-22-2007 07:31 AM
How to read UDP packet payload ? sceadu Programming 2 02-07-2006 10:00 PM
How to use skbuff to scan every byte of the payload of an UDP packet? sceadu Programming 0 11-03-2004 10:34 PM
how to include my payload with packet that kernel sends to other pc cranium2004 Linux From Scratch 0 02-23-2004 03:11 AM


All times are GMT -5. The time now is 12:32 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration