Check out my first novel, midnight's simulacra!
Tcpdump
From dankwiki
Important flags
- -n to disable (per-packet blocking) DNS lookups
- -s snaplen to capture more than the default snapshot length. 0 for no limit.
Recipes
- Capture all arp: tcpdump arp
- Capture packets to or from a MAC address M: tcpdump "ether host M