Hello, I searched a lot but I don't find a solution. I would to know if it is possible in tshark to filter the traffic (in Bytes) for each mac address exemple :
I have started something like this :
Any idea please ? kevin asked 01 Mar '11, 08:29 steameraproject edited 01 Mar '11, 14:06 SYN-bit ♦♦ |
3 Answers:
Try this: answered 01 Mar '11, 10:32 joke edited 02 Mar '11, 03:40 |
Thank you so much for your quick response !! I will try this tomorrow. Another question : My goal is to detect abnormal traffic volume during the night (virus...) I do not necessarily know all the mac address as they connect to wifi so is it possible to combine the data volume per mac address without knowing them ? something like this :
thank you again kevin answered 02 Mar '11, 09:38 steameraproject |
To see all ethernet conversations use: answered 02 Mar '11, 10:41 joke |