02.01.2016 Views

Linux

linux_admin_text-1.0.0_2

linux_admin_text-1.0.0_2

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

6 <br />

6.2.4 <br />

<br />

<br />

<br />

tcpdump GUI <br />

Wireshark <br />

6.2.5 tcpdump <br />

tcpdump <br />

<br />

tcpdump <br />

<br />

-i eth0 <br />

<br />

tcpdump tcpdump.out <br />

<br />

# tcpdump -i eth0 > tcpdump.out<br />

tcpdump: verbose output suppressed, use -v or -vv for full protocol decode<br />

listening on eth0, link-type EN10MB (Ethernet), capture size 65535 bytes<br />

SSH <br />

Ctrl+C tcpdump <br />

listening on eth0, link-type EN10MB (Ethernet), capture size 65535 bytes<br />

^C216 packets captured Ctrl+C <br />

216 packets received by filter<br />

0 packets dropped by kernel<br />

tcpdump.out <br />

# grep ssh tcpdump.out<br />

13:17:06.041096 IP client.example.com.43880 > server.example.com.ssh: Flags<br />

[S], seq 4050960604, win 14600, options [mss 1460,sackOK,TS val 13231 ecr 0,n<br />

op,wscale 6], length 0<br />

www.lpi.or.jp 185 (C) LPI-Japan

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!