security-scripts/tcpdump-schedule/README.md
2025-02-25 11:35:53 +01:00

467 B

tcpdump scripts

  • tcpdump_getdata.sh: Capture network traffic, stop with Ctrl-C
  • tcpdump_stop.sh: Stop the tcpdump command (e.g. when using crontab)
  • tcpdump.yml: Ansible Playbook which takes a tcpdump on the remote side(s) and copy it automatically to your server

crontab

This is the crontab for an example tcpdump which starts at 02:00am and stops at 02:05am.

0 2 * * * bash /tmp/tcpdump_getdata.sh
5 2 * * * bash /tmp/tcpdump_stop.sh