On 08/10/2012 09:39 PM, JP wrote:
Daniel Borkmann <borkmann@...> writes:

Do you see something like ...

$ file foo.pcap
foo.pcap: tcpdump capture file (little-endian) - version 2.4
(Ethernet, capture length 65535)


weird - the file generated by DUMPCAP shows up as:

# file test.pcap
test.pcap: data

netsniff-ng only supports pcap file version 2.4
I suspect that this capture file was saved in another format.
Your best shot would be to open it in wireshark and save it in this format.


Guidance?

Thanx





--
You received this message because you are subscribed to the Google
Groups "netsniff-ng" group.

To post to this group, send email to [email protected]

To unsubscribe from this group, send email to
[email protected]

http://netsniff-ng.org

Reply via email to