Huge thanks to our Platinum Members Endace and LiveAction,
and our Silver Member Veeam, for supporting the Wireshark Foundation and project.

Wireshark-users: Re: [Wireshark-users] getting data from tcpdump to tshark

From: Ian Schorr <ian.schorr@xxxxxxxxx>
Date: Mon, 20 Jul 2009 08:43:17 +1000

 It seems less than ideal to have to capture on the interface again and repeat the filtering, rather than taking advantage of the fact that tcpdump has already done it for me.


If you have tshark capture on the interface and do the exact same filtering, would this work for you?  They're both using the same capture library with the same capture filtering system.  I'm not sure what you mean by "capture on the interface AGAIN", "REPEAT the filtering", and "tcpdump has already done it for me", but in this case there'd be no duplication of effort.