How to do a packet capture (tcpdump)

Sample Command on how to use TCP Dump

Linux: tcpdump -w {filename}.pcap  -c 200 {limit number of packets}

tcpdump -s 2000 -w dump.pcap

Then you can email the file to any one using command

mail -s "dump.pcap" < dump.pcap

You can then open with file w/ Wireshark

Article ID: 27
Created: Wed, Jun 6, 2012
Last Updated: Fri, Jun 27, 2014
Author: Natural Networks NOC

Online URL: