hi,
I have a problem capturing packets using pcap. My application requires me
to capture RAW(packets sent from a RAW socket whose IP header has been
constructed by the sending application) packets with a particular protocol
number. What might be the filter expression be for such a capture to be
effected? I tried "ip[10]=IPPROTO_MYESP" where IPPROTO_MYESP is a
user-defined protocol but this doesn't seem to work. Any ideas will be
greatly appreciated. Thanks.
Subramoni Padmanabhan
G-126, 700 woodland avenue
Lexington, Kentucky 40508
Phone : 859 323 9405
_________________________________________________________________
MSN 8: advanced junk mail protection and 2 months FREE*.
http://join.msn.com/?page=features/junkmail
-
This is the TCPDUMP workers list. It is archived at
http://www.tcpdump.org/lists/workers/index.html
To unsubscribe use mailto:[EMAIL PROTECTED]?body=unsubscribe
- [tcpdump-workers] pcap question Edward Brown
- Re: [tcpdump-workers] pcap question Guy Harris
- Re: [tcpdump-workers] pcap question Michael Richardson
- Re: [tcpdump-workers] pcap question Jefferson Ogata
- Re: [tcpdump-workers] pcap question subramoni padmanabhan
- Re: [tcpdump-workers] pcap question Guy Harris
- [tcpdump-workers] pcap question subramoni padmanabhan
