Luca Deri wrote:
I have considered your suggestion to move pfring into a pcap-pfring.*
file.
I didn't make such a suggestion.
I did say
Would it work better if, for PF_RING sockets, there were a separate
pcap_read_pf_ring, and handle->read_op were set to pcap_read_pf_ring if
a PF_RING socke
I posted patches to the sourceforge projects of both tcpdump and libpcap
which together enabled capturing packets for a given number of seconds. I
don't really see any activity on either sites, so I was hoping that
someone here could tell me how I should proceed, and if I've done anything
stupid i
On Wed, Jan 23, 2008 at 02:23:06PM -0800, Aaron Turner wrote:
> Box is Linux 2.6.12 kernel
> tcpdump 3.8
> libpcap 0.8.3
> Intel e1000 NIC
>
> Long story short,
>
> 1) when sniffing on the vlan tagged interface (eth0.5), I can see
> inbound and outbound traffic, but the ethernet frames are not ta