3 ms·
If you’re on recent Windows system, you should have pktmon [1] available. I believe it’s the „netsh trace” successor and has much nicer command line. And you no
by lowleveldesign 5y ago
If you’re on recent Windows system, you should have pktmon [1] available. I believe it’s the „netsh trace” successor and has much nicer command line. And you no longer need an external tool to convert the trace to .npcap format.
[1] https://docs.microsoft.com/en-us/windows-server/networking/technologies/pktmon/pktmon https://docs.microsoft.com/en-us/windows-server/networking/t...
- slowstart 5y agoPktMon is the next generation tool in newer Windows 10 versions and brings many of the same benefits referred to in this blog - particularly being able to view packet captures and traces together in the same text file.
- SaveTheRbtz 5y agoThanks! Added it back to the blogpost (seems like we accidentally lost the `pktmon` reference during the editing process =)