tcpdump mailing list archives

Re: editing tcpdump binary files


From: Jefferson Ogata <Jefferson.Ogata () noaa gov>
Date: Fri, 23 May 2003 03:05:02 -0400

Hannes Gredler wrote:
On Thu, May 22, 2003 at 09:56:51AM -0700, Vaidehi Kasarekar wrote:
| Hello,
| | I was wondering if there are any tools, by which we can edit tcpdump binary
| files. (The files which are created by the tcpdump -w option).
| | | | I want to change the source and dest IP addresses present in the binary
| files to some other addresses. For this, i need to see the presence of these
| addresses, and update these addresses by different addresses.
| | | | Any help or guidance in this matter wld be really very useful.

i am using binary VI for that purpose

http://bvi.sourceforge.net/

Vern Paxson wrote a tool called NetDuDE specifically for this purpose. I think you'll find it a lot more useful than bvi.

--
Jefferson Ogata <Jefferson.Ogata () noaa gov>
NOAA Computer Incident Response Team (N-CIRT) <ncirt () noaa gov>

-
This is the TCPDUMP workers list. It is archived at
http://www.tcpdump.org/lists/workers/index.html
To unsubscribe use mailto:tcpdump-workers-request () tcpdump org?body=unsubscribe


Current thread: