Results 1 to 2 of 2
Thread: FTP during tcpdump
Enjoy an ad free experience by logging in. Not a member yet? Register.
- Join Date
- Nov 2010
FTP during tcpdump
I need to start a tcpdump, and then download a file by FTP. I can't understand any way of achieving this in the tcpdump man file, iany help would be greatly appreciated! Thanks.
Ftp is a bit tricky, as both passive and active use two connections with one of these connections being dynamic.
The following will catch all connections to a <FTP_HOST> and ignore port 22.
You can ignore more ports, if applicable.
tcpdump -n -i <DEVICE> host <FTP_HOST> and not port 22You must always face the curtain with a bow.