官术网_书友最值得收藏!

Capturing traffic with Tshark

Tshark can be used to capture network packets and/or display data from the capture or a previously saved packet trace file; packets can be displayed on the screen or saved to a new trace file.

The same syntax used to perform a basic capture using Dumpcap will work with Tshark as well, so we won't repeat that here. However, Tshark offers a very wide range of additional features, with a corresponding large number of command-line options that can, as in all Wireshark utilities, be viewed by typing tshark –h in the command prompt.

A number of Tshark options are to view statistics; an example of the command syntax and statistical results from a capture (after pressing Ctrl + C to end the capture) is illustrated in the following screenshot:

You will find an extensive number of details and examples on using statistics and other Tshark options at https://www.wireshark.org/docs/man-pages/tshark.html.

主站蜘蛛池模板: 酒泉市| 麻城市| 宁河县| 华宁县| 乌拉特前旗| 肥城市| 鄢陵县| 运城市| 喜德县| 怀集县| 苏尼特右旗| 南投县| 英德市| 达日县| 龙南县| 大庆市| 龙州县| 广昌县| 丽江市| 吴川市| 班戈县| 克拉玛依市| 景德镇市| 兴安盟| 泌阳县| 义马市| 河津市| 蓝山县| 黑水县| 文山县| 青州市| 虹口区| 温泉县| 高密市| 江北区| 漠河县| 荆州市| 景谷| 白玉县| 山阳县| 清涧县|