stevommmm / conns

A less awkward tcpdump | uniq

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

conns

conns provides a tcpdump like utility to capture unique IP hits based on an active pcap filter. Currently only TCP & UDP protocols are potentially counted.

Essentially a less awkward tcpdump | awk | sort | uniq.

Usage:
  conns [-r] [filter command]

-r enables name resolution of IPs on collection

filter command is currently required to be a single string

to-do:

  • move to new dns resolution funcs
  • concat all unparsed args into the pcap filter string

About

A less awkward tcpdump | uniq

License:MIT License


Languages

Language:C 94.1%Language:Makefile 5.9%