Wireshark-users: Re: [Wireshark-users] Use tcpdump to capture for Wireshark?

From: John Oliver <joliver@xxxxxxxxxxxxxxx>
Date: Tue, 24 Oct 2006 11:14:02 -0700
On Tue, Oct 24, 2006 at 01:55:22PM -0400, jrhendri@xxxxxxxxxxxx wrote:
> John,
> 
> You might also need/want to add "-s0" to let it capture the entire
> packet including payload. This will let Wireshark do a better job at
> decoding the protocol.
> (By default tcpdump will only grab the first 68 bytes.)

Thanks for all the help! :-)

-- 
***********************************************************************
* John Oliver                             http://www.john-oliver.net/ *
*                                                                     *
***********************************************************************