tcpdump into a file correctly
What I do want is something like:
Code:
tcpdump -i igb0 'tcp[13] & 2 != 0' -w tcpdump.txt If I pipe into a file using bash, tcpdstat is obviously not fine with the file format. Help me a bit please. |
Quote:
|
Without writing to a file everything is ok. But the exact problem is - I want to write it to a file in the order tcpdstat expects it(the order -w option meant to create, maybe im wrong). I believe its not hard, I just don't know how. And maybe another question by the way, I know about snort and stuff, but if I would make a little script for an easy hand-check, how could I make a process(utility with given arguments) to run for several seconds, count until some of the values reached the sought-for point and finish its job? I have tried with "read", "at", "sleep", combinig sed+awk, but unsuccessfully.
|
Quote:
|
I could've given you a link, but its russian. And I'm home now, and no google cloud ;) sorry, I'll try to translate and clarificate better tomorrow. But it is exactly what im talking about. I even got an idea, what exactly I have explained wrong
Quote:
"tcpdstat - Get protocol statistics from tcpdump pcap files". And please, if someone could throw some notes on the second part of the question? |
It is quite okay, just try to understand that the output of option '-w' is not a human readable text-file.
|
Quote:
Quote:
|
Thank you, even tho I'm not the best explainer out there, the info you gave me is exactly what I've been seeking for. And if you still want the link, here goes http://www.bit-team.com/index.php?showtopic=3930 Short story is, he explains how to use all these utilities for good taking cisco as example. But he is talking superficially, so I kind of interpret it for myself.
|
Quote:
|
All times are GMT -5. The time now is 11:04 AM. |