最近在windows和linux上同时抓包,记录一下命令:
linux使用tcpdump:tcpdump -i bond1 -w tcp-again.cap udp and dst host 10.0.0.1
window使用自带的netsh:
开始:netsh trace start capture=yes traceFile="c://win-again.etl" overwrite=yes correlation=no protocol=udp ipv4.address=192.168.0.1 maxSize=1MB
停止:netsh trace stop