I tried 
   tcpdump -i rl0 src host -w /usr/tcpdump.data
   tcpdump -i rl0 host -w /usr/tcpdump.data
   tcpdump -i rl0 src ip -w /usr/tcpdump.data  

but got syntax error msg with no hint of what was wrong

If I remove the -w stuff it works. Meaning it prints to the screen.
But I want to write to file

Can you help me out here on the syntax error?

One other thing. When does tcpdump get access to the packet?

My firewall has a block log rule for that ip address. 
Does tcpdump see the packet before ipfilter ipnat does?


freebsd-questions@freebsd.org mailing list
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to