diff options
Diffstat (limited to 'network/ngrep/README')
-rw-r--r-- | network/ngrep/README | 14 |
1 files changed, 14 insertions, 0 deletions
diff --git a/network/ngrep/README b/network/ngrep/README new file mode 100644 index 0000000000..a87f5e32cc --- /dev/null +++ b/network/ngrep/README @@ -0,0 +1,14 @@ +ngrep strives to provide most of GNU grep's common features, applying +them to the network layer. ngrep is a pcap-aware tool that will allow +you to specify extended regular or hexadecimal expressions to match +against data payloads of packets. It currently recognizes IPv4/6, TCP, +UDP, ICMPv4/6, IGMP and Raw across Ethernet, PPP, SLIP, FDDI, Token +Ring and null interfaces, and understands BPF filter logic in the same +fashion as more common packet sniffing tools, such as tcpdump and snoop. + +ngrep is built with IPV6 support by default; to disable it, do this: + NGREP_IPV6=no ./ngrep.SlackBuild + +A patch is included for IPV4 and IPV6 packet reassembly applied by default. +The patch adds the -r switch to ngrep. To disable the patch, do this: + ASSEM_PATCH=no ./ngrep.SlackBuild |