728x90
I'm using tshark to capture network traffic as pcap file but when the dumping is done the captured file format is pcapng at the end! I don't know what is the problem! I use this command in my Linux shell: |
You need to specify libpcap as -F parameter:
|
'LINUX' 카테고리의 다른 글
| apache 2.x + openssl 설치시 오류 해결 방법 (0) | 2018.06.08 |
|---|---|
| Tshark Usage (0) | 2018.06.04 |
| [WireShark] CLI Version Tshark (0) | 2018.06.04 |
| [Ubuntu] Wowza Streaming Engine II (0) | 2018.06.03 |
| [Ubuntu] Wowza Streaming Engine I (0) | 2018.06.03 |
Hmm.
tshark -Fshows the options, and for a master build I get:Interesting - you're right, same for me. I always use "libpcap" and it still seems to work. But "pcap" also works. I think older versions only had "libpcap" as parameter option.
So maybe @met1366 needs to upgrade his tshark binaries.
The problem was I had tshark version 1.10.6 which had a bug not to capture pcap file! I've already upgraded to latest version and now it's fixed.
Thanks
You can use either pcap or libpcap since this commit.