--- Begin Message ---
I’m a HS computer science teacher and have been teaching a new class in
cyber security. I have been working on developing curriculum and I just
started using tcpdump in my lessons.
I worked 15 years in IT when Novell Netware and OS/2 were king. I would
appreciate any resource
--- Begin Message ---
The "-y" flag to tcpdump allows you to specify capturing with
DLT_LINUX_SLL2.
//tmp @fenner-t493.sjc% tcpdump -i any -y linux_sll2 udp port 53
tcpdump: data link type linux_sll2
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on any, li