July 2004
Beginner to intermediate
832 pages
20h 56m
English
This chapter supplements the core tools presented in Chapter 5. All of them work with full content data. They provide additional ways to examine and manipulate that data, beyond the capabilities of Tcpdump and related applications.
Purpose: Packet capture assistance
Author: Originally Gerald Combs, with many contributors
Internet site: http://www.ethereal.com
FreeBSD installation: Installed via /usr/ports/net/ethereal
Version demonstrated: Versions shipped with Ethereal 0.10.0a
Editcap and Mergecap are two utilities packaged with Tethereal and Ethereal. Editcap allows users to make certain adjustments to capture files, while Mergecap allows users to combine two or more libpcap traces into a single ...
Read now
Unlock full access