tcpdump

tcpdump is a command-line packet sniffing and protocol analyzer tool writtin in C/C++. It captures live RX/TX packets on a network interface in promiscuous mode, and displays the content of the packets in a human-readable format in real time. tcpdump can write captured raw packets to a file, which then can be loaded later by tcpdump for offline analysis. The underlying packet capture library (libpcap for Linux/Unix, and WinPcap for Windows) can selectively capture packets based on filtering rules expressed in BPF (berkely packet filter). The BPF-based filter can capture packets with specific source/destination IP addresses/prefixes, protocols (IP/ICMP/UDP/TCP), port numbers, protocol fields (TCP SYN/FIN/ACK), or even raw bit values at an arbitrary byte offset.


  • Website: http://www.tcpdump.org/
  • Platform: Cross-platform
  • License: BSD
  • Documentation: http://www.tcpdump.org/index.html#documentation
  • Source repository: git
  • Community: mailing list bug tracker
  • Features: ,
  • Similar Software

    Nagios Nagios is an industry-standard open-source IT infrastructure and network monitoring software which can monitor server resources (e.g., CPU, memory, disk usage), network equipments (e.g., switches or r...
    Wireshark Wireshark is a GUI-based packet sniffing and analyzer tool which captures live packets from a network interface, dissect their protocols, and displays packet contents in human-readable format. Wiresh...
    netdata netdata is a web-based, real-time performance monitoring system which visualizes the system resource usage of a local Linux server (which netdata is running on) via time-series statistics. Monitored s...
    SmokePing SmokePing is an active network latency measurement tool written in Perl. SmokePing monitors round-trip-time delays, jitters, and packet loss rates against remote hosts over time, and shows historical...
    ntopng ntopng is a real-time network traffic monitor offering HTML5/AJAX-based web interface. ntopng can visualize elephant flows, IP geolocation, traffic matrix of local networks, and geolocation/AS maps o...

    Subscribe to Xmodulo List

    Do you want to receive posts about Linux applications and software recommended by Xmodulo List? Enter your email address below, and we will deliver our recommendations straight to your email box, for free. Delivery powered by Google Feedburner.

    Leave a comment

    Your email address will not be published. Required fields are marked *