Hey guys, I wrote a sniffer making use of pcap's packet capturing, I appear to be getting the right device number for it, however i'm not getting the right ip protocol number, i'm using the structures in netinet/ip.h for the ip protocol, this is alright, appart from the fact i get wierd protocol number for it, i appear to be getting 56320 for tcp packets, wich, from what i understand should infact either be 6 or 0, 6 being the tcp number, and 0 being the tcp dummy number, as defined in netinet/in.h and /etc/protocols. Any help would be appreciated.
Regards, Iain McAleer - This is the TCPDUMP workers list. It is archived at http://www.tcpdump.org/lists/workers/index.html To unsubscribe use mailto:[EMAIL PROTECTED]?body=unsubscribe
