抓取TCP协议端口为22网络流量包,且包的上限为1M

/tool sniffer
set file-name="example.pcap"
set file-limit="1000"
set filter-ip-protocol="tcp"
set filter-port="22"
start
/file print where name="example.pcap"

其它参数:

  • filter-ip-address
  • filter-cpu
  • filter-interface
  • filter-direction