59 lines
1.9 KiB
Markdown
59 lines
1.9 KiB
Markdown
|
|
|
|||
|
|
|
|||
|
|
**TCPDUMP_MESA**
|
|||
|
|
|
|||
|
|
fork from tcpdump for MESA sapp platform
|
|||
|
|
|
|||
|
|
------
|
|||
|
|
|
|||
|
|
```
|
|||
|
|
tcpdump version 4.8.1
|
|||
|
|
libpcap version 1.8.1
|
|||
|
|
OpenSSL 1.0.2k-fips 26 Jan 2017
|
|||
|
|
Usage: tcpdump [-aAbdDefhHIJKlLnNOpqStuUvxX#] [ -B size ] [ -c count ]
|
|||
|
|
[ -C file_size ] [ -E algo:secret ] [ -F file ] [ -G seconds ]
|
|||
|
|
[ -i interface ] [ -j tstamptype ] [ -M secret ] [ --number ]
|
|||
|
|
[ -Q in|out|inout ]
|
|||
|
|
[ -r file ] [ -s snaplen ] [ --time-stamp-precision precision ]
|
|||
|
|
[ --immediate-mode ] [ -T type ] [ --version ] [ -V file ]
|
|||
|
|
[ -w file ] [ -W filecount ] [ -y datalinktype ] [ -z postrotate-command ]
|
|||
|
|
[ -Z user ] [ expression ]
|
|||
|
|
----------------------------------------------------------------------------------------------.
|
|||
|
|
The follow args is customized for tcpdump_mesa:
|
|||
|
|
[ -a ] enable perceptive mode, can detect loss packet number.
|
|||
|
|
[ -g greedy-seek ] enable greedy seek to most inner IP layer, for tunnel, embed protocol.
|
|||
|
|
[ -k thread-id ] to assign sapp recv thread id, support multi-range, for example: 1,3,5,7.
|
|||
|
|
[ -o offset ] to assign offset from MAC, for skip some low layer data, for example: vxlan=50, mac_in_mac=14.
|
|||
|
|
[ -P port ] to assign sapp recv command port.
|
|||
|
|
[ --vlan-as-mac-in-mac ] force VLAN to be analysed as MAC-IN-MAC format.
|
|||
|
|
```
|
|||
|
|
|
|||
|
|
|
|||
|
|
|
|||
|
|
------
|
|||
|
|
|
|||
|
|
**2016-11-29 lijia**
|
|||
|
|
|
|||
|
|
<EFBFBD><EFBFBD><EFBFBD><EFBFBD>FTP<EFBFBD><EFBFBD>ʽ, TCP<43><50><EFBFBD>Ӵ<EFBFBD><D3B4><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>, UDP<44><50><EFBFBD>Ӵ<EFBFBD><D3B4><EFBFBD>ʵ<EFBFBD>ʲ<EFBFBD><CAB2><EFBFBD>.
|
|||
|
|
|
|||
|
|
1. <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD><F2BFAAB1><EFBFBD>UDPδ<50>ö˿<C3B6>, Ĭ<><C4AC>12345, <20>类ռ<E7B1BB><D5BC>, ˳<><CBB3><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
|
|||
|
|
|
|||
|
|
2. <20><>sapp<70><70><EFBFBD><EFBFBD>TCP<43><50><EFBFBD><EFBFBD>, <20><><EFBFBD>ͱ<EFBFBD><CDB1><EFBFBD>UDP<44><50><EFBFBD><EFBFBD><EFBFBD>˿<EFBFBD>
|
|||
|
|
|
|||
|
|
3. <20><>sapp<70><70><EFBFBD>Ͳ<EFBFBD><CDB2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>, <20><><EFBFBD><EFBFBD>BPF-filter<65><72><EFBFBD><EFBFBD><EFBFBD>ַ<EFBFBD><D6B7><EFBFBD>
|
|||
|
|
|
|||
|
|
4. <20><>UDP<44>˿ڶ<CBBF>ȡsapp<70><70><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ݰ<EFBFBD>
|
|||
|
|
|
|||
|
|
5. <20><><EFBFBD><EFBFBD>tcpdumpԭ<70><D4AD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>, <20><><EFBFBD><EFBFBD><EFBFBD><EFBFBD>ӡ<EFBFBD><D3A1>д<EFBFBD>ļ<EFBFBD>
|
|||
|
|
|
|||
|
|
------
|
|||
|
|
|
|||
|
|
**2017-08-08 lijia**
|
|||
|
|
|
|||
|
|
1. <20><><EFBFBD><EFBFBD>ָ<EFBFBD><D6B8><EFBFBD>̺߳Ų<CCBA><C5B2><EFBFBD><EFBFBD><EFBFBD><EFBFBD><EFBFBD>
|
|||
|
|
|
|||
|
|
------
|
|||
|
|
|
|||
|
|
**2020-09-28** yangwei
|
|||
|
|
|
|||
|
|
1. <20>Ż<EFBFBD>greedy_seekģʽ<C4A3><CABD>Ϊ<EFBFBD><CEAA><EFBFBD><EFBFBD><EFBFBD><EFBFBD>DLT_RAW<41><57><EFBFBD>͵<EFBFBD>cbpf<70><66><EFBFBD>ڴ<EFBFBD>IPͷ<50><CDB7><EFBFBD><EFBFBD>ʼƥ<CABC><C6A5><EFBFBD><EFBFBD><EFBFBD>˹<EFBFBD><CBB9><EFBFBD>
|