On Tue, May 5, 2009 at 2:56 PM, Roger E. Rustad, Jr <[email protected]> wrote: > Dante Lanznaster wrote: >> I'd use wireshark. Has always worked. > > Yeah, I'll try that on a unit. I was just hoping for something quick > and easy to slam out (and possibly pipe to a text file), as looking at a > computer in the sun is sometimes a pain.
Both use the same underlying shim (libpcap). I think you just need to fiddle with the options. Unless you need one of the fancy high level decoders in WS, you're better off with tcpdump. That said there is a command line front end to WS included w/ it. Now if I understand, you are directly connected to the device... obviously you're not going to be able to snoop on a device on a different switch port. -- John.
