tcpdump:如何捕获 ping (ICMP echo request/reply)

以下命令将在 eth0 上捕获 ping 请求/回复(ICMP echo 请求/回复),并且(由于 -v 将解码并显示它们):

capture_icmp.sh
tcpdump -i eth0 -v 'icmp'

示例输出:

tcpdump-output.txt
13:51:16.007460 IP (tos 0x0, ttl 255, id 1522, offset 0, flags [none], proto ICMP (1), length 56)
    10.158.211.2 > 10.158.211.1: ICMP echo request, id 32000, seq 2982, length 36
13:51:16.007484 IP (tos 0x0, ttl 64, id 37357, offset 0, flags [none], proto ICMP (1), length 56)
    10.158.211.1 > 10.158.211.2: ICMP echo reply, id 32000, seq 2982, length 36

Check out similar posts by category: Networking