Hi: In reviewing a file captured from a server I found my IP adress as a source or as a destination, but there is not combination without my IP adress.
When sniffing packets, I suppose, even if they does not come to my IP adress because sniffing I stress for passing all packets through my IP adress.... Anyway, how I can identify TCP connections between two IP adress different from my own? On the other hand, it is possible to a network administrator to identify that we are sniffing in a passive way? Many thank's, have a nice day, César - This is the tcpdump-workers list. Visit https://lists.sandelman.ca/ to unsubscribe.