tcpdump mailing list archives

Re: tcpdump + pf_ring capture: bogus savefile header


From: Guy Harris <guy () alum mit edu>
Date: Tue, 8 Mar 2011 10:51:03 -0800


On Mar 8, 2011, at 1:15 AM, M. V. wrote:

now, when i use tcpdump which is compiled with libpcap-pf_ring to capture 
traffic,

Is that standard tcpdump, or Luca's modified tcpdump (which is part of the PF_RING stuff)?

If it's the standard tcpdump, what happens if you pass it the argument "-s 8192" when you capture to a file?-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: