bitmeteros
bitmeteros copied to clipboard
Help on listening to traffic via a specific adapter
When I run windump -D I can see that I have 3 adapters on a machine 1.\Device\NPF_{name} (Intel(R) PRO/3000 PT Dual Port Server Adapter) 2... 3... How do query traffic coming from only of those adapters? When I try bmdb addfilter I am not able to find a good syntax bmdb addfilter A A "src host name" was what I expected to work, but it is rejected
If you want to create a filter for traffic coming from one of your adapters you can just use the ip address of the adapter you are interested in, for example: bmdb addfilter A A "src 1.2.3.4"