I want to capture packets passing through multiple interface on linix machine.

I tried 1. "dumpcap -i eth1 eth2 ....." 2. "dumpcap -i eth1 -i eth2 ....." But nothing work.

I don't want to use "dumpcap -i any ...." because it will capture some undesired traffic as well.

I am currently using dumpcap version:

Dumpcap 1.6.6 (SVN Rev Unknown from unknown)

Dumpcap 1.6.6 (SVN Rev Unknown from unknown)

can you please try a newer version of dumpcap, as I believe the feature to capture on multiple interfaces was implemented later.


Kurt Knochner
Yes, that feature was added in Wireshark 1.8.0. See the Release Notes.

