[Bridge] Sniffing a linux bridge vs sniffing enslaved interfaces

The Q theq at rogers.com
Mon Feb 16 21:35:58 UTC 2015


 

Hi all

 

Assume that you have a linux bridge with two interfaces eth0 and eth1
enslaved to this bridge

What is the difference between sniffing the bridge and sniffing its
interfaces?

 

tcpdump -i br0   vs tcpdump -i eth0

 

Thanks

MiniME

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.linuxfoundation.org/pipermail/bridge/attachments/20150216/745ade7e/attachment-0004.html>


More information about the Bridge mailing list