CentOS6.5下使用tcpdump进行抓包
网卡信息:# ifconfig
eth1 Link encap:Ethernet HWaddr 00:0C:29:22:D9:BC
inet addr:192.168.1xx.xxx Bcast:192.168.103.255 Mask:255.255.255.0
inet6 addr: fe80::20c:29ff:fe22:d9bc/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:143238715 errors:0 dropped:31 overruns:0 frame:0
TX packets:161956323 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:115399917729 (107.4 GiB) TX bytes:80610840471 (75.0 GiB)
在linux下执行命令:tcpdump -i eht1 -w w2.pcap
提示:
tcpdump: eht1: No such device exists
(SIOCGIFHWADDR: No such device)
找到原因了:eth1写成eht1了。