iptrace -a -i en1 -s clientip -b -d serverip -p 80 trace.out
This trace will capture both directions of the port 80 traffic on interface en1 between the clientip and serverip and send this to the raw file of trace.out.
2. Reproduce the problem, then run the following:
ps -ef|grep iptrace
kill
Trace tools like Wireshark can read trace.out files created by iptrace
 
No comments:
Post a Comment