On Wednesday 19 November 2008 20:48, John Jackson wrote:
> On Wed, Nov 19, 2008 at 08:18:00PM -0800, Jeff Simmons wrote:
> > I need, at a minimum, which virtual server at a particular IP address is
> > being accessed, and the contents of any GET commands (methods). If
> > there's a way to get this via tcpdump I haven't found it yet.
> >
> > On Wednesday 19 November 2008 19:52, Pui Edylie wrote:
> > > why not tcpdump and filter it on port 80?
> > >
> > > Jeff Simmons wrote:
> > > > Anyone know of a text-based program that will dump http protocol
> > > > packets? Like tcpdump, but for http.
>
> Try netwox, tethereal, tcpflow. One of those should get you what you
> want. Not necessarily in that order though.
tcpflow (which is in ports) is giving me exactly what I need, with a little
help from perl. I obviously need to improve my "search for a program that
does X" skills.
Thanks to everyone for the help.
--
Jeff Simmons [EMAIL PROTECTED]
Simmons Consulting - Network Engineering, Administration, Security
"You guys, I don't hear any noise. Are you sure you're doing it right?"
-- My Life With The Thrill Kill Kult