this is looking yummy :)

sudo tcpdump -Anpl -s0 -w - -i eth0 dst port 80 | stdbuf -oL strings -n8

tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size 
262144 bytes
GET 
/weatherstation/updateweatherstation?dateutc=now&action=updateraw&realtime=1l_
&id=24C86E06B15C&mt=tower&sensor=00008384l_
&humidity=30&tempf=79.3l_
&baromin=29.29&battery=normal&rssi=2l_
 HTTP/1.1
Host: l_
hubapi.myacurite.com
User-Agent: Hub/224l_
Connection: close
GET 
/weatherstation/updateweatherstation?dateutc=now&action=updateraw&realtime=1o_
&id=24C86E06B15C&mt=tower&sensor=00012694o_
&humidity=46&tempf=71.5o_
&baromin=29.29&battery=normal&rssi=3o_
 HTTP/1.1
Host: o_
hubapi.myacurite.com
User-Agent: Hub/224p_
Connection: close
GET 
/weatherstation/updateweatherstation?dateutc=now&action=updateraw&realtime=1q_
&id=24C86E06B15C&mt=5N1x31&sensor=00002179q_
&windspeedmph=1&winddir=113q_
&rainin=0.00&dailyrainin=0.20&humidity=37&tempf=79.4&dewptf=50q_
&baromin=29.29&battery=normal&rssi=3q_
 HTTP/1.1
Host: q_
hubapi.myacurite.com
User-Agent: Hub/224q_
Connection: close
GET 
/weatherstation/updateweatherstation.php?ID=KCATHOUS110&PASSWORD=ofsglckk&dateutc=now&action=updateraw&realtime=1r_
&rtfreq=36r_
&id=24C86E06B15C&mt=5N1x31&sensor=00002179r_
&windspeedmph=1&winddir=113r_
&rainin=0.00&dailyrainin=0.20&humidity=37&tempf=79.4&dewptf=50r_
&baromin=29.29&battery=normal&rssi=3r_
 HTTP/1.1
Host: r_
rtupdate.wunderground.comr_
Connection: close
^C114 packets captured
114 packets received by filter
0 packets dropped by kernel


I went a head and ran it through the combine.pl as well:
sudo tcpdump -Anpl -s0 -w - -i eth0 dst port 80 | stdbuf -oL strings -n8 | 
./combine.pl
tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size 
262144 bytes
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=tower&sensor=00008384&humidity=30&tempf=79.3&baromin=29.28&battery=normal&rssi=2hubapi.myacurite.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=tower&sensor=00008384&humidity=30&tempf=79.3&baromin=29.28&battery=normal&rssi=2hubapi.myacurite.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=5N1x38&sensor=00002179&windspeedmph=1&humidity=37&tempf=78.8&baromin=29.28&battery=normal&rssi=3hubapi.myacurite.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=tower&sensor=00012694&humidity=46&tempf=71.5&baromin=29.28&battery=normal&rssi=3hubapi.myacurite.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=tower&sensor=00008384&humidity=30&tempf=79.3&baromin=29.28&battery=normal&rssi=2hubapi.myacurite.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=5N1x31&sensor=00002179&windspeedmph=1&winddir=90&rainin=0.00&dailyrainin=0.20&humidity=37&tempf=78.8&dewptf=51&baromin=29.28&battery=normal&rssi=3hubapi.myacurite.com
ID=KCATHOUS110&PASSWORD=ofsglckk&dateutc=now&action=updateraw&realtime=1&rtfreq=36&id=24C86E06B15C&mt=5N1x31&sensor=00002179&windspeedmph=1&winddir=90&rainin=0.00&dailyrainin=0.20&humidity=37&tempf=78.8&dewptf=51&baromin=29.28&battery=normal&rssi=3rtupdate.wunderground.com
dateutc=now&action=updateraw&realtime=1&id=24C86E06B15C&mt=tower&sensor=00012694&humidity=46&tempf=71.5&baromin=29.28&battery=normal&rssi=3hubapi.myacurite.com
^C117 packets captured
117 packets received by filter
0 packets dropped by kernel





On Saturday, November 5, 2016 at 3:33:59 PM UTC-7, mwall wrote:
>
> On Saturday, November 5, 2016 at 6:00:00 PM UTC-4, Brad Tucker wrote:
>>
>> sudo tcpdump -i eth0 dst port 80
>> tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
>> listening on eth0, link-type EN10MB (Ethernet), capture size 262144 bytes
>> 14:53:48.501215 IP 192.168.1.18.4102 > 
>> ec2-52-4-188-138.compute-1.amazonaws.com.http: Flags [S], seq 62518866, win 
>> 400, options [mss 536], length 0
>>
>> sudo tcpdump -A -n -p -l -i eth0 -s0 -w - tcp dst port 80 (Please note 
>> the - tcp not -tcp) There is a space. w/o it I get 0 output.
>> tcpdump: listening on eth0, link-type EN10MB (Ethernet), capture size 
>> 262144 bytes
>> <<&�8vB$�n�E(n�d�o��4��/P&}��|EPP����UX���&�8vB$�n�Exn�d���4��/P&}��|EPP��GET
>>  
>> /weatherstation/updateweatherstation?dateutc=now&action=updateraw&realtime=1�UX�M``&�8vB$�n�ERn�d�C��4��/P&}�!|EPP�sI&id=24C86E06B15C&mt=5N1x31&sensor=00002179�UXkVQQ&�8vB$�n�ECn�d�Q��4��/P&}�K|EPP�ΐ&windspeedmph=1&winddir=203�UXFltt&�8vB$�n�Efn�d�-��4��/P&}�f|EPP�Ŧ&rainin=0.00&dailyrainin=0.20&humidity=30&tempf=83.2&dewptf=48�UX�ZZ&�8vB$�n�ELn�d�F��4��/P&}ؤ|EPP��S&baromin=29.28&battery=normal&rssi=3�UXP�GG&�8vB$�n�E9n�d�X��4��/P&}��|EPP���
>>  
>> HTTP/1.1
>> Host: �UXl�__&�8vB$�n�EQod�?��4��/P&}��|EPP��jhubapi.myacurite.com
>> User-Agent: Hub/224�UXG�MM&�8vB$�n�E?od�P��4��/P&}�|EPP�2<
>> Connection: close
>>
>
> good.  neither of those alone is what we want, but tcpdump is doing what 
> is supposed to do.
>
> now post the output from this:
>
> sudo tcpdump -Anpl -s0 -w - -i eth0 dst port 80 | stdbuf -oL strings -n8
>
> the 'strings -n8' simply filters out any lines that are shorter than 8 
> characters
>
> the -Anpl gives us ascii, no name lookups, non-promiscuous, line-buffered 
> output from tcpdump.  the -w - sends to stdout instead of file, and 
> controls the number of bytes snarfed (probably not an issue here).
>
> m
>

-- 
You received this message because you are subscribed to the Google Groups 
"weewx-user" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
For more options, visit https://groups.google.com/d/optout.

Reply via email to