Changes To tcpdump for windows

Changes to "tcpdump for windows" between 2014-01-25 05:01:31 and 2014-01-27 06:28:49

1
2
3

4

5


6


7

8
9
10


1
2
3
4
5
6

7
8
9
10
11

12



13
14



+

+
-
+
+

+
+
-
+
-
-
-
+
+
Everything you need to run "[`tcpdump`](http://www.tcpdump.org/)" on Microsoft Windows in a single portable executable.

   - [Download](wiki?name=Download)
   - [More Information](wiki?name=More Information)

The "`-i`" option has been modified to support IP addresses in addition to interface names.  The IP address can be a local address or a remote one.
It is a "[`tcpdump`](http://www.tcpdump.org/)" executable, [WinPcap](http://www.winpcap.org/) library and driver wrapped in a simple executable that:

Example usage:

   - Basic usage:
     - `C:> tcpdump -nn -i 0.0.0.0`
   1. Unpacks the files to a temporary directory;
   - Write out a capture file (which can be read by "wireshark" or "tcpdump"):
   2. Installs and starts the "`npf`" driver (from [WinPcap](http://www.winpcap.org/));
   3. Runs `tcpdump.exe`; and
   4. Cleans up everything
     - `C:> tcpdump -i 0.0.0.0 -w capture.pcap`