tcpdump mailing list archives

capturing vlan traffic on linux


From: "Aaron Turner" <synfinatic () gmail com>
Date: Wed, 23 Jan 2008 14:23:06 -0800

Box is Linux 2.6.12 kernel
tcpdump 3.8
libpcap 0.8.3
Intel e1000 NIC

Long story short,

1) when sniffing on the vlan tagged interface (eth0.5), I can see
inbound and outbound traffic, but the ethernet frames are not tagged.
2) when sniffing on the physical interface (eth0) I can see only one
direction of traffic (outbound I think), and again no vlan tags.

Is it not possible to sniff traffic with the vlan tags if the traffic
is destined or generated by the host?  Or do I need to upgrade
something?

Thanks,
Aaron

-- 
Aaron Turner
http://synfin.net/
http://tcpreplay.synfin.net/ - Pcap editing & replay tools for Unix
They that can give up essential liberty to obtain a little temporary
safety deserve neither liberty nor safety.  -- Benjamin Franklin
-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: