Hello, Does anyone know how can I capture flows to port 443 on an enc0 interface
# tcpdump -ni enc0tcpdump: listening on enc0, link-type ENC 12:29:52.626065 (authentic,confidential): SPI 0x63b38934: 192.168.2.1.18413 > 192.168.1.1.443: S 3266713948:3266713948(0) win 16384 <mss 1460,nop,nop,sackOK,nop,wscale 3,nop,nop,timestamp 2536169238 0> (DF) (encap) But tcpdump -ni enc0 port 443 gives nothing. I understand that it's encapsulated so in the second command the filter 443 don't match however there should be a way to use a filter since in the first capture we can see tcpdump is aware about port 443 Thank you