Re: [Wireshark-users] Ethereal vs wireshark

2007-07-30 Thread Small, James
Did you try dumpcap? It's included with Wireshark (the latest version of Ethereal) and typically is much better at capturing because it doesn't do any processing - it just dumps everything to a file. I've used it in many situations where Wireshark/tshark would drop packets (1Gbps+) because of

[Wireshark-users] Ethereal vs wireshark

2007-07-29 Thread winter
Hello, sirs, What kind of tools can capture ethernet packets (such as UDP) fast enough on the Linux platform? Ethereal cannot fulfill my requirements. I'm using packETH 1.4 to send packets. I found that Ethereal cannot monitor all of the packets if I send 10 (or more) packets (100