tcpdump port ! \( 251 or 620 or 252 or 250 or 22 \)
tcpdump port ! \( 251 or 620 or 252 or 250 or 22 or 1271 or 1272 or 1273 or 1204 or 1205 \)
/usr/sbin/tcpdump -n -nn -s 0 host 192.168.91.192 -w tcpdump151
/usr/sbin/tcpdump -nn -i bond0 dst port 3871
/usr/sbin/tcpdump -A -vv -r tcpdump151 >tcpanal
还有 snort SNORT
tcpdump 中文man
http://blog.chinaunix.net/u/28949/showart_251296.html问题解决
阅读(457) | 评论(0) | 转发(0) |