May 23, 2011 Archives

Mon May 23 08:32:53 CDT 2011

Live remote display of packet capture with Wireshark.

I would never do this on a really busy server without a narrow capture filter, but it's a handy trick when the situation will allow it: 'wireshark -k -i <(ssh omessenger0 'sudo tshark -i eth1 -w - not port 22')'

Posted by arreyder | Permalink