Tech·Ed North America 2011

We Don't Need No Stinkin' GUI: Command-Line Capture Techniques (Remote Options)

Download this episode

Download Video

Description

Why go to the GUI when the command-line capabilities of Tshark or tcpdump may be all you need to capture files to file sets,use a ring buffer,apply capture filters,extract specific fields,export traffic information for analysis in Microsoft Excel,or... you get the idea. In this session,Laura focuses on the methods used to capture local or remote traffic to troubleshoot,secure and optimize a network. Examining rpcapd.exe,Laura explains how to set up a remote host that sends you every little packet you want. Whipping out Tshark,Laura builds some pretty slick little batch files (remember those?) to send to a packet neophyte so you get just the traffic you want. It's 1984 all over again and the command-line rules,eh?

Day:

2

Code:

SIM202

Embed

Format

Available formats for this video:

Actual format may change based on video formats available and browser capability.

    The Discussion

    Comments closed

    Comments have been closed since this content was published more than 30 days ago, but if you'd like to continue the conversation, please create a new thread in our Forums, or Contact Us and let us know.