25 | | Find the one that shows an inet address of 10.x.x.x In the example it is eth0. Yours may be different, but that is still ok. |
26 | | Then type the command `sudo tcpdump -i eth0 -s 0 -x -w /tmp/tcpdump.pcap` This will begin listening to the traffic that comes through this node and that specific ethernet link, eth0 in the example. |
27 | | From Alice type `wget http://server1/cgi-bin/ip.cgi` This saves a local copy of the web page set up on the server, and by doing so we generated traffic to examine. |
| 25 | Find the one that shows an inet address of 10.x.x.x In the example above it is eth0. Yours may be different, but that is still ok. |
| 26 | Then type the command `sudo tcpdump -i eth0 -s 0 -x -w /tmp/tcpdump.pcap` This will begin listening to the traffic that comes through this node and that specific ethernet link, eth0 in the example, and write the data out to the file tcpdump.pcap in the tmp diretory. At this time, the person connected to Alice will enter the command `wget http://server1/cgi-bin/ip.cgi` This saves a local copy of the web page set up on the server, and by doing so generates HTTP traffic to examine. |