系统吧 专业的电脑操作系统,支持重装各种原版系统xp/win7/win8/win10 这个系统怎么样?试试系统吧系统,体验办公系统畅快愉悦感。 各种电脑系统安装过程一样,神一般的畅快!
-->
当前位置:主页 > 电脑技术 >

超详细的网络抓包神器 tcpdump 使用指南(7)

作者:谢金冉 分类:电脑技术 发布时间:2021-07-10 05:52:00

$ tcpdump -v -n port 67 or 68tcpdump: listening on enp7s0, link-type EN10MB (Ethernet), capture size 262144 bytes14:37:50.059662 IP (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), le...

$ tcpdump -v -n port 67 or 68tcpdump: listening on enp7s0, link-type EN10MB (Ethernet), capture size 262144 bytes14:37:50.059662 IP (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 328)    0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from 00:0c:xx:xx:xx:d5, length 300, xid 0xc9779c2a, Flags [none]      Client-Ethernet-Address 00:0c:xx:xx:xx:d5      Vendor-rfc1048 Extensions        Magic Cookie 0x63825363        DHCP-Message Option 53, length 1: Request        Requested-IP Option 50, length 4: 10.10.1.163        Hostname Option 12, length 14: "test-ubuntu"        Parameter-Request Option 55, length 16:           Subnet-Mask, BR, Time-Zone, Default-Gateway          Domain-Name, Domain-Name-Server, Option 119, Hostname          Netbios-Name-Server, Netbios-Scope, MTU, Classless-Static-Route          NTP, Classless-Static-Route-Microsoft, Static-Route, Option 25214:37:50.059667 IP (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 328)    0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from 00:0c:xx:xx:xx:d5, length 300, xid 0xc9779c2a, Flags [none]      Client-Ethernet-Address 00:0c:xx:xx:xx:d5      Vendor-rfc1048 Extensions        Magic Cookie 0x63825363        DHCP-Message Option 53, length 1: Request        Requested-IP Option 50, length 4: 10.10.1.163        Hostname Option 12, length 14: "test-ubuntu"        Parameter-Request Option 55, length 16:           Subnet-Mask, BR, Time-Zone, Default-Gateway          Domain-Name, Domain-Name-Server, Option 119, Hostname          Netbios-Name-Server, Netbios-Scope, MTU, Classless-Static-Route          NTP, Classless-Static-Route-Microsoft, Static-Route, Option 25214:37:50.060780 IP (tos 0x0, ttl 64, id 53564, offset 0, flags [none], proto UDP (17), length 339)    10.10.1.1.67 > 10.10.1.163.68: BOOTP/DHCP, Reply, length 311, xid 0xc9779c2a, Flags [none]      Your-IP 10.10.1.163      Server-IP 10.10.1.1      Client-Ethernet-Address 00:0c:xx:xx:xx:d5      Vendor-rfc1048 Extensions        Magic Cookie 0x63825363        DHCP-Message Option 53, length 1: ACK        Server-ID Option 54, length 4: 10.10.1.1        Lease-Time Option 51, length 4: 86400        RN Option 58, length 4: 43200        RB Option 59, length 4: 75600        Subnet-Mask Option 1, length 4: 255.255.255.0        BR Option 28, length 4: 10.10.1.255        Domain-Name-Server Option 6, length 4: 10.10.1.1        Hostname Option 12, length 14: "test-ubuntu"        T252 Option 252, length 1: 10        Default-Gateway Option 3, length 4: 10.10.1.1

5. 总结

本文主要介绍了 tcpdump 的基本语法和使用方法,并通过一些示例来展示它强大的过滤功能。将 tcpdump 与 wireshark 进行组合可以发挥更强大的功效,本文也展示了如何优雅顺滑地结合 tcpdump 和 wireshark。如果你想了解更多的细节,可以查看 tcpdump 的 man 手册。

xp 更多>>
win7 更多>>
win8 更多>>
win10 更多>>
U盘 更多>>
电脑技术 更多>>
网站地图 | 豫ICP备2021035069号-4 | 友情链接qq:191064436
系统吧

版权所有 © 2012-2023 系统吧 免责声明:本站资源均收集于互联网,其著作权归原作者所有,如果有侵犯您权利的资源,请来信告知,我们将及时删除相应资源。