Ethereal-users: [ethereal-users] Capture Filter Questions

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

Date: Wed, 23 Aug 2000 10:20:45 -0400

I am running ethereal on an ethernet segment attached to a NetWare network.  The
network runs both TCP/IP and IPX/SPX.  When I do a capture of all network
traffic, I see IPX packets, NCP packets, LLC packets, ARP packets, SAP packets,
etc.  I've looked through the TCPdump documentation, but have not been able to
figure out how to write a capture filter for just NCP packets or IPX packets.
I've been able to capture packets to and from various IP addresses, but the
syntax in the TCPdump man page is not intuitive for much else.   What would be
the syntax for a capture filter for IPX?

 Thanks in advance for the help.