From owner-freebsd-hackers Sat Oct 24 06:22:38 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id GAA11500 for freebsd-hackers-outgoing; Sat, 24 Oct 1998 06:22:38 -0700 (PDT) (envelope-from owner-freebsd-hackers@FreeBSD.ORG) Received: from WEBBSD1.turnaround.com.au (webbsd1.turnaround.com.au [203.39.138.49]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id GAA11486 for ; Sat, 24 Oct 1998 06:22:35 -0700 (PDT) (envelope-from J_Shevland@TurnAround.com.au) Received: from TurnAround.com.au (ras4.turnaround.com.au [192.168.1.115]) by WEBBSD1.turnaround.com.au (8.8.7/8.8.7) with ESMTP id AAA15572; Sun, 25 Oct 1998 00:24:42 +1100 (EST) (envelope-from J_Shevland@TurnAround.com.au) Message-ID: <3631D2DE.94BFC754@TurnAround.com.au> Date: Sun, 25 Oct 1998 00:15:10 +1100 From: Joe Shevland Organization: Turnaround Solutions Pty. Ltd. X-Mailer: Mozilla 4.06 [en] (Win95; I) MIME-Version: 1.0 To: "Matthew N. Dodd" CC: Jacques Vidrine , Robert Butler , freebsd-hackers@FreeBSD.ORG Subject: Re: Anybody know if there is any decoding capability in tcpdump? References: Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-hackers@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG Matthew N. Dodd wrote: > > On Wed, 21 Oct 1998, Jacques Vidrine wrote: > > ``tcpshow's output is simular to Sun Solaris's snoop(1M) command for > > network packet capture and inspection.'' > > > > Note however that it is not real time. It reads a tcpdump packet > > output file. > > While mostly corect, you can use tcpdump and tcpshow in concert over a > pipe to effect realtime display. While it is somewhat more cumbersome > than snoop, I kind of like having 2 simple (sic) commands rather than 1 > large one. > > -- > | Matthew N. Dodd | 78 280Z | 75 164E | 84 245DL | FreeBSD/NetBSD/Sprite/VMS | > | winter@jurai.net | This Space For Rent | ix86,sparc,m68k,pmax,vax | > | http://www.jurai.net/~winter | Are you k-rad elite enough for my webpage? | > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-hackers" in the body of the message Tad trivial, but thanks to whoever made a reference to the port Ethereal the other day. I downloaded the latest version, compiled and installed smoothly with about 2 commands, and seems an excellent little tool for packet capture if you've got the Gimp Toolkit and X installed. I especially liked the TCP stream follow option for looking at TCP dumps. -- Joe To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-hackers" in the body of the message