Split pcap to multiple files based on number of packets

Here is a script that can use tshark to split a large pcap to multiple small pcaps   inpcap=”test.pcap” max=$(tshark…

Continue Reading →

dnstop – top like utility for Fedora and other *nix

For installation : sudo yum install dnstop And now some description: dnstop is a libpcap application (ala tcpdump) that displays…

Continue Reading →

log analysis with perl and wireshark decode.

Here is something that I had to do in couple of hours to check the logs. The problem was the…

Continue Reading →