Linux下的wireshark
默认CentOS是没有这个命令的,需要安装
-
[root@localhost ~]# yum install -y wireshark
下面这条命令用于web服务器,类似于访问web访问日志,有时候若服务器没有配置访问日志,可以临时使用这个命令查看一下当前服务器上的web请求
-
[root@localhost ~]# tshark -n -t a -R http.request -T fields -e "frame.time" -e "ip.src" -e "http.host" -e "http.request.method" -e "http.request.uri"
-
Running as user "root" and group "root". This could be dangerous.
-
Capturing on eth0
-
Mar 4, 2015 16:47:21.012497000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:21.074953000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:21.194306000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:21.195083000 192.168.2.59 239.255.255.250:1900 M-SEARCH *
-
Mar 4, 2015 16:47:21.238191000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:21.239029000 192.168.2.59 239.255.255.250:1900 M-SEARCH *
-
Mar 4, 2015 16:47:24.074608000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:24.201362000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:24.202174000 192.168.2.59 239.255.255.250:1900 M-SEARCH *
-
Mar 4, 2015 16:47:24.249410000 [FF02::C]:1900 M-SEARCH *
-
Mar 4, 2015 16:47:24.250206000 192.168.2.59 239.255.255.250:1900 M-SEARCH *
-
Mar 4, 2015 16:47:26.227773000 192.168.1.17 msg.mail.163.com GET /cgi/mc?funcid=getusrnewmsgcnt&fid=0&username=linyonghua.hi%40163.com
-
Mar 4, 2015 16:47:26.653048000 [FF02::C]:1900 M-SEARCH *
阅读(1283) | 评论(0) | 转发(0) |