tcpdump mailing list archives

Re: Capturing without having superuser rights


From: Damien ANCELIN <damien.ancelin () ens-lyon fr>
Date: Wed, 15 Oct 2008 10:45:20 +0200

To give you more informations :
- "metrology platform" will be a computer that can be used by many users to capture packets (coming from a mirroring port of a switch).
- It's currently running on an linux debian.

It seems there is no common manner to do this in a simple way (I will have a look on that kernel patch).

Thanks for your help
Damien

sthaug () nethelp no a écrit :
As I'm developping on libpcap to provide a metrology plateform, I was
wondering if there is a manner to enable a specific user (or a specific
group) to capture from a network interfaces (even in promiscuous mode),
without using sudo.
I'm trying to do this with udev, but I'm not shure it can works.

Does anybody have an idea ?
Depends on the platform you are on. On FreeBSD all you need is read write permission to the /dev/bpf* devices.

And for *capturing* you really only need read permission.

Steinar Haug, Nethelp consulting, sthaug () nethelp no
-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.

--
Damien ANCELIN
INRIA engineer - RESO research team
Tel : +33 4 72 72 87 95
LIP, ENS-LYON
Bureau 352

-
This is the tcpdump-workers list.
Visit https://cod.sandelman.ca/ to unsubscribe.


Current thread: