pmalek
3/8/2016 - 12:10 PM

How to launch wireshark getting data from tcpdump on another machine

How to launch wireshark getting data from tcpdump on another machine

mkfifo fifo
wireshark -k -i fifo &

while true; do ssh MACHINE_IP 'tcpdump -s 0 -U -n -w - "! arp && host 10.0.0.1"' > fifo; done