home bbs files messages ]

Forums before death by AOL, social media and spammers... "We can't have nice things"

   comp.protocols.tcp-ip      TCP and IP network protocols.      14,669 messages   

[   << oldest   |   < older   |   list   |   newer >   |   newest >>   ]

   Message 12,887 of 14,669   
   Barry Margolin to Satish   
   Re: tcpdump -w file is not capturing all   
   27 May 09 08:31:52   
   
   ae1fd719   
   From: barmar@alum.mit.edu   
      
   In article   
   <81396715-8485-4f34-a646-f03f0e413e5c@b7g2000pre.googlegroups.com>,   
    Satish  wrote:   
      
   > I am trying to capture tcpdump for traffic to a port in a file but   
   > this does not seem to capture all the packets. Command I use is :   
   >   
   > tcpdump -w tdump.dat port 22   
   >   
   > Why is it not capturing all the packets ?   
      
   ...   
      
   > Both the commands were run for 10 secs. In fact I ran the command with   
   > -w option for 15 secs but still the captured packets in the dump are   
   > are just 6 compared to 26 packets without the file save option. Any   
   > reason ? What I can I do to capture all ?   
      
   Were you running the command in the SSH login session?  There's more   
   traffic when you display to the screen because that output is going   
   through port 22.  When you send to a file, there's less output on your   
   screen, so fewer packets are needed to send them.   
      
   --   
   Barry Margolin, barmar@alum.mit.edu   
   Arlington, MA   
   *** PLEASE don't copy me on replies, I'll read them in the group ***   
      
   --- SoupGate-Win32 v1.05   
    * Origin: you cannot sedate... all the things you hate (1:229/2)   

[   << oldest   |   < older   |   list   |   newer >   |   newest >>   ]


(c) 1994,  bbs@darkrealms.ca