I'm capturing data on two interfaces on an AMD. I would like to do a tcpdump capture all of the traffic on one of the interfaces, because it appears I'm not getting any traffic on that interface. What is the format of the command I should use.
Solved! Go to Solution.
I would like to capture all the traffic the AMD is seeing on a specific interface and therefore I do not what to add a filter for a specific host. Is there a way to specify all the host, maybe by supplying a range ? I did not see an example of how to filter for a range of hosts on the site you supplied.
See below command to capture all traffic for particular interface.
tcpdump -i eth0
To analysis data, use WireShark & below cmd:
tcpdump -i eth0 -s0 -C 100 -w yourfilename.pcapng
Before your use this cmd make sure you are in root and in tmp directory.
This cmd will save each file to 100mb and create another 100mb file.
Get communication between 2 host
tcpdump -w yourfilename.pcap -i eth0 dst 126.96.36.199