jaywera.blogg.se

Tcpdump pcap wireshark
Tcpdump pcap wireshark












If doing a live capture or a replay with version 4.9.9, tcpdump can only display the interface information because it is looking at the live interface configuration of the system it is running on, and can calculate the interface name for display. You can't see the interface name in Wireshark because it is not embedded in the pcap file in the first place. I need something like this (captured with "tcpdump -Penni any" on R80.20)Īny ideas to get interfaces in text output with tcpdump and also in capture file (for wireshark) back?

tcpdump pcap wireshark

With cppcap you can get it in text output but not in capture/wireshark. I used "-Q inout" but I didn't get the interfaces.














Tcpdump pcap wireshark