study | tcpdump

Tcpdump is the premier network analysis tool for information security professionals. Having a solid grasp of this über-powerful application is mandatory for anyone desiring a thorough understanding of TCP/IP. Many prefer to use higher level analysis tools such as Ethereal Wireshark, but I believe this to usually be a mistake.

yep, it is useful, but i do prefer ethereal most of the time. i’ve only used tcpdump when i wanted to capture then analyze.