-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathcapture.cpp
More file actions
74 lines (61 loc) · 2.15 KB
/
capture.cpp
File metadata and controls
74 lines (61 loc) · 2.15 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
#include <iostream>
#include <pcap.h>
#include <chrono>
// using namespace std;
static int packetCount = 0;
void packetHandler(u_char *userData, const struct pcap_pkthdr* pkthdr, const u_char* packet) {
std::cout << ++packetCount << " packet(s) captured\tlen: " << pkthdr->len <<" \ttime: " <<pkthdr->ts.tv_usec
<<" \tbatch: " <<*((int*)userData) <<std::endl;
}
int main(int argc, char *argv[]) {
if(argc < 3){
std::cout <<"Usage: "<<argv[0] <<" {filename} {seconds}\n\n";
return 1;
}
std::string strFilename = argv[1], strTime = argv[2];
char *dev;
pcap_if_t *alldevs;
pcap_t *descr;
pcap_dumper_t* dumper;
char errbuf[PCAP_ERRBUF_SIZE];
// dev = pcap_lookupdev(errbuf);
// if (dev == NULL) {
if (pcap_findalldevs(&alldevs, errbuf) == -1) {
std::cout << "pcap_lookupdev() failed: " << errbuf << std::endl;
return 1;
}
dev = alldevs->name;
// dev = alldevs;
descr = pcap_open_live(dev, BUFSIZ, 0, -1, errbuf);
if (descr == NULL) {
std::cout << "pcap_open_live() failed: " << errbuf << std::endl;
return 1;
}
dumper = pcap_dump_open(descr,strFilename.c_str());
if (dumper == NULL) {
std::cout << "pcap_dump_open() failed: " << pcap_geterr(descr)
<< "\n filename = " << strFilename << std::endl;
return 1;
}
time_t timEnd = std::time(nullptr) + std::stoi(strTime);
int iBatch, iCount;
while (timEnd > std::time(nullptr)) {
iBatch++; // std::cout <<"Batch: " << iBatch++ <<std::endl;
// if(pcap_dispatch(descr, -1, packetHandler, (u_char*) &iBatch) == PCAP_ERROR){
iCount = pcap_dispatch(descr, -1, &pcap_dump, (u_char*)dumper);
if( iCount == PCAP_ERROR){
std::cout <<pcap_geterr(descr);
return 1;
}
if(iCount)
std::cout <<iCount <<" packets captured.\n";
}
pcap_dump_close(dumper);
pcap_close(descr);
// if (pcap_loop(descr, 10, packetHandler, NULL) < 0) {
// cout << "pcap_loop() failed: " << pcap_geterr(descr);
// return 1;
// }
std::cout << "capture finished" << std::endl;
return 0;
}