
Chapter 2. Monitoring and benchmark tools  55
Draft Document for Review May 4, 2007 11:35 am 4285ch02.fm
Figure 2-2   iptraf output of TCP/IP statistics by protocol
Figure 2-3   iptraf output of TCP/IP traffic statistics by packet size
2.3.13  tcpdump / etherealThe tcpdump and ethereal are used to capture and analyze network traffic. Both tool uses the 
libpcap library to capture packets. They monitor all the traffic on a network adapter with 
promiscuous mode and capture all the frames the adapter has received. To capture all the 
packets, these commands should be executed with super user privilege to make the interface 
promiscuous mode.