
20 Nov
2012
20 Nov
'12
1:58 a.m.
On Tue, 20 Nov 2012 12:20:43 +1100 Chris Samuel <chris@csamuel.org> wrote: I should have said in initial post :. It is a hosted Xen VM - not a physical server. and no X, ie: all gui option are out.. Daniel.
On 20/11/12 09:35, Trent W. Buck wrote:
IME best practice is to put tcpdump on your router, run tcpdump -wfoo.pcap
You want to add -s0 to that if you want to capture the whole packet (tshark does that automatically).
cheers, Chris