Popular
Latest Articles
- How to Secure your Cisco Router
- Creating CLI Views on a Cisco Router
- Configuring TACACS+ on a Cisco Router
- How to enable SDM on your router
- Build a Samba Server on Redhat / CentOS
- How to set the Time / Date and Timezone in CentOS
- How to install SSH on Solaris 10 x86
- ESX4 - How do I turn on/off a Virtual Machine from the command line ?
Running a packet capture on a SourceFire Sensor
Monday, 01 March 2010 15:26
Below shows you the required steps for running a packet capture on a SourceFire Sensor.
Which Interfaces are Sniffing ?
First of all we get a list of interfaces that is are sniffing for malicious traffic. Note : the fps normally relate to eth. Though you still use the fps reference within the tcpdump.
Tcpdump the Interface
Using the interface numbers output from the last command you can now use these to run a tcpdump.
Example: Overview of trafficWe can also get an overview of the traffic by running the following command,
We have 30 guests online