tcpdump Examples

From Wikistix
Jump to navigation Jump to search

Example tcpdump invocations:

IPv6 icmp router advertisements
tcpdump -ni le0 'icmp[icmptype] = icmp-routeradvert'
IPv6 icmp router advertisements embedded in PPPoE frames, where the PPPoE version and type aren't 0x11
tcpdump -xxepni le0 '(ether proto 0x8863 or ether proto 0x8864) and ether[14] != 0x11’
IPv6 icmp echo requests
tcpdump -i le0 'icmp6 && ip6[40] == 128'
icmpv6 types include
  • unreachable (1)
  • too-big (2)
  • time-exceeded (3)
  • echo-request (128)
  • echo-reply (129)
  • router-solicitation (133)
  • router-advertisement (134)
  • neighbor-solicitation (135)
  • neighbor-advertisement (136)

Misinformation found herein copyright Paul Ripke (aka “stix”) stixpjr@gmail.com.