On 08/10/2012 09:39 PM, JP wrote:
Daniel Borkmann <borkmann@...> writes:
Do you see something like ...
$ file foo.pcap
foo.pcap: tcpdump capture file (little-endian) - version 2.4
(Ethernet, capture length 65535)
weird - the file generated by DUMPCAP shows up as:
# file test.pcap
test.pcap: data
netsniff-ng only supports pcap file version 2.4
I suspect that this capture file was saved in another format.
Your best shot would be to open it in wireshark and save it in this format.
Guidance?
Thanx
--
You received this message because you are subscribed to the Google
Groups "netsniff-ng" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to
[email protected]
http://netsniff-ng.org