| Hello, I searched a lot but I don't find a solution. I would to know if it is possible in tshark to filter the traffic (in Bytes) for each mac address exemple : I have started something like this : Any idea please ? kevin asked 01 Mar '11, 08:29 steameraproject edited 01 Mar '11, 14:06 SYN-bit ♦♦ | 
3 Answers:
| Try this: answered 01 Mar '11, 10:32 joke edited 02 Mar '11, 03:40 | 
| Thank you so much for your quick response !! I will try this tomorrow. Another question : My goal is to detect abnormal traffic volume during the night (virus...) I do not necessarily know all the mac address as they connect to wifi so is it possible to combine the data volume per mac address without knowing them ? something like this : thank you again kevin answered 02 Mar '11, 09:38 steameraproject | 
| To see all ethernet conversations use: answered 02 Mar '11, 10:41 joke | 
