Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump"

2004-06-04 Thread Guy Harris
On Jun 4, 2004, at 1:09 PM, ice ice wrote: here is more information about tcpdump's output: % tcpdump -c 5 -n tcp -r 20020814-09-0-anon.pcap.gz 11:00:00.58 69.245.49.10.2082 > 143.173.237.247.1214: . 2133229289:2133230749(1460) ack 6821225 win 17188 (DF) 11:00:00.69 236.179.225.218.473

Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump"

2004-06-04 Thread ice ice
to figure out the way to parse through the packets. I am wondering whether there is some simple sample programs I can read or use in analyzing the pacekts? thanks, zs From: Guy Harris <[EMAIL PROTECTED]> Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: [tcpdump-workers] Are all

Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump"

2004-06-04 Thread Guy Harris
On Jun 4, 2004, at 9:32 AM, ice ice wrote: Yes, I should say that the trace file is in pcap format. 20020814-09-0-anon.pcap.gz: tcpdump capture file (little-endian) - version 2.4 (BSD/OS Cisco HDLC, capture length 48) So I couldn't assume the 48byte header is the normal IP+whatever header ev

Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump"

2004-06-04 Thread ice ice
From: Stephen Donnelly <[EMAIL PROTECTED]> Reply-To: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump" Date: Fri, 04 Jun 2004 14:45:25 +1200 ice ice wrote: I have a trace saying "Data provided by WAND Re

Re: [tcpdump-workers] Are all traces captured by dag card in "tcpdump"

2004-06-03 Thread Stephen Donnelly
ice ice wrote: I have a trace saying "Data provided by WAND Research Group using the dag interface card OC48 data analysis required CAIDA's CoralReef software suite." I am confused by the statement of "OC48 data analysis required CAIDA's CoralReef software suite". It seems to me that traces captu

[tcpdump-workers] Are all traces captured by dag card in "tcpdump" format?

2004-06-03 Thread ice ice
Hi, I have a trace saying "Data provided by WAND Research Group using the dag interface card OC48 data analysis required CAIDA's CoralReef software suite." I am confused by the statement of "OC48 data analysis required CAIDA's CoralReef software suite". It seems to me that traces captured by dag