Hello,

Does anyone know how can I capture flows to port 443 on an enc0 interface

# tcpdump -ni enc0tcpdump: listening on enc0, link-type ENC
12:29:52.626065 (authentic,confidential): SPI 0x63b38934: 192.168.2.1.18413 > 
192.168.1.1.443: S 3266713948:3266713948(0) win 16384 <mss 
1460,nop,nop,sackOK,nop,wscale 3,nop,nop,timestamp 2536169238 0> (DF) (encap)

But tcpdump -ni enc0 port 443 gives nothing.

I understand that it's encapsulated so in the second command the filter 443 
don't match however there should be a way to use a filter since in the first 
capture we can see tcpdump is aware about port 443

Thank you

Reply via email to