tcpdump mailing list archives
Re: sniffer.c
From: Hannes Gredler <hannes () juniper net>
Date: Fri, 31 Jan 2003 09:25:00 +0100
On Thu, Jan 30, 2003 at 02:57:11PM -0500, Derrick wrote:
| I've been looking for the sniffer.c file that the pcap.html documentation
| refers to. however none of the mirrors have this file nor the main
| www.tcpdump.org site.(arg!). I'm having problems with the structures that
| contain the TCP and IP headers. specifically
|
| /* Ethernet header */
| struct sniff_ethernet {
| u_char ether_dhost[ETHER_ADDR_LEN]; /* Destination host address */
| u_char ether_shost[ETHER_ADDR_LEN]; /* Source host address */
| u_short ether_type; /* IP? ARP? RARP? etc */
| };
| ETHER_ADDR_LEN is not defined ANYWERE !!!
| I'm new to network programming so finding this is has been difficult. I had
| hoped that finding the sniffer.c program would help unravel this mystery that
| every one else seams to know about...
ETHER_ADDR_LEN is typically defined to 6 to represent the byte lenght of
48-bit IEEE MAC adresses;
/hannes
-
This is the TCPDUMP workers list. It is archived at
http://www.tcpdump.org/lists/workers/index.html
To unsubscribe use mailto:tcpdump-workers-request () tcpdump org?body=unsubscribe
Current thread:
- sniffer.c Derrick (Jan 30)
- Re: sniffer.c Hannes Gredler (Jan 31)
- Re: sniffer.c Jose . Araujo (Jan 31)
