Hi, If I want to filter for DNS queues sent by my machine to ANY DNS server for www.petenetlive.com what is the filter for that? Ive been searching google of 35 minutes. Why is that so hard to find :-/ Pete asked 22 Sep '16, 07:43 Pete Long edited 22 Sep '16, 12:31 Guy Harris ♦♦ |
One Answer:
The filter for that is If you take any DNS query packet you happen to find (use just Why is it hard - because the generic question is "how do I filter for field X of protocol Y" and there are hundreds of protocols with hundreds of fields each. So there is no chance to have a tutorial for each, so finding a packet of the protocol you want and localizing the field of interest inside it is the most efficient way. answered 22 Sep '16, 08:01 sindy |
Perfect, just what I needed
Regards
Pete