if you have a newer version of tcpdump, the option -X prints the ascii along
with it.  Limit it to the right port, and you should be able to watch it.

tcpdump -ax -s 0 port www

Jay

-----Original Message-----
From: tclug-list-admin at mn-linux.org
[mailto:tclug-list-admin at mn-linux.org]On Behalf Of Bob Tanner
Sent: Monday, July 02, 2001 4:08 AM
To: tclug-list at mn-linux.org
Subject: [TCLUG] Decoding http posts on the wire?


Anyone know of a good tool for decoding http request, especially POST
requests
on the wire ala snoop, tcpdump, ethereal?

I want to decode some http POSTS and since the code is all binary (no
source) I
want to see what is happening on the wire.

--
Bob Tanner <tanner at real-time.com>       | Phone : (952)943-8700
http://www.mn-linux.org                 | Fax   : (952)943-8500
Key fingerprint =  6C E9 51 4F D5 3E 4C 66 62 A9 10 E5 35 85 39 D9

_______________________________________________
tclug-list mailing list
tclug-list at mn-linux.org
https://mailman.mn-linux.org/mailman/listinfo/tclug-list