Published on 09 May 2020 in IT

wireshark tshark

tshark 로 DNS query 필터링

tshark -nr (pcapfilename) -T fields -e dns.qry.name -e dns.a -Y 'dns.flags.rcode==0 && dns.flags.response==1'

Comments