Llanzlan Klazmon the 15th <(E-Mail Removed)> wrote:
> "Rav" <(E-Mail Removed)> wrote in news:1162396420.202269.14760
> @i42g2000cwa.googlegroups.com:
>> i m new to linux, plz tell me how and where can i find info related
>> to the TCPDUMP program output...i m not able to understand
>> completely the fields actually the program(tcpdump)
>> displays...linux mauals don't help much other then specifying the
>> various parameters...in fact the problem is not only with TCPDUMP
>> but the other programs too like ARP, IFCONFIG and many more...any
>> help is appreciated...thnx in adv.
> If you send the data captured by tcpdump to a file using -w, you can
> use ethereal to read and display the file in a graphical window with
> the protocols etc interpreted for you.
Using -v or -vv or such with tcpdump can do (in ascii) something quite
similar. That will handle the syntax of the fields and such, but does
little to help with understanding their semantics. For that you still
need to go to the RFC's and/or books.
rick jones
--
web2.0 n, the dot.com reunion tour...
these opinions are mine, all mine; HP might not want them anyway...

feel free to post, OR email to rick.jones2 in hp.com but NOT BOTH...