dumpcap保存为Wireshark格式

时间:2019-07-03 12:44:13

标签: wireshark tshark

我正在使用以下命令在后台运行dumpcap并保存到文件中:

dumpcap -i any -f "(host 10.10.10.10 or host 10.10.11.11) and tcp" -b filesize:10000 -w trace.pcap -q > /dev/null 2>&1 & disown

随后在Wireshark中打开文件显示:

The file "trace_....pcap" isn't a capture file in a format Wireshark understands.

该怎么办?

0 个答案:

没有答案