Skip to main content
Version: current

packet


tool/sniffer/packet​

Type: Directory

The packets that the last run of start captured, kept in memory for 10 minutes after the sniffer stops, or until the next start. time counts seconds from the start of the capture, shown with microseconds. See Packet sniffer.

Read-only ArgumentTypeDescription
timenumTime offset of the packet relative to the start of the capture, in seconds with microsecond precision.
numnumPacket sequence number, starting from 0 for the first captured packet.
directionenum (rx | tx) { rx:0, tx:1 }Direction of the packet relative to the router, rx received, tx sent.
src-macmacAddrSource MAC address of the frame, shown only for interfaces that have a MAC address, for example Ethernet, WiFi, EoIP, VXLAN or VLAN.
dst-macmacAddrDestination MAC address of the frame, shown only for interfaces that have a MAC address, for example Ethernet, WiFi, EoIP, VXLAN or VLAN.
vlanobject { vlan: composite { id: num , prio: [ num] } }VLAN tag of the frame, displayed as id:priority.
interfaceiface_enumInterface on which the packet was captured.
src-addresscomposite { address: alt { ip: ipAddr , ipv6: ip6Addr } , port: enum () }Source IP address and source port of the packet, displayed as address:port.
dst-addresscomposite { address: alt { ip: ipAddr , ipv6: ip6Addr } , port: enum () }Destination IP address and destination port of the packet, displayed as address:port.
protocolenum ()MAC (L2) protocol of the frame, for example ip, arp or ipv6.
ip-protocolenum (ip) { ip:0 }IP protocol of the packet, for example icmp, tcp or udp.
sizenumTotal frame size in bytes, including the L2 header.
cpunumCPU core on which the packet was processed.
ip-packet-sizenumSize of the IP packet in bytes.
ip-header-sizenumSize of the IP header in bytes.
dscpnumDSCP (Differentiated Services Code Point) field of the IP header.
ecnnumECN (Explicit Congestion Notification) field of the IP header.
identificationnumIdentification field of the IP header.
fragment-offsetnumFragment offset field of the IP header.
ttlnumTime to live field of the IP header.
tcp-flagsmulti { array-id, flag: enum (fin | syn | rst | psh | ack | urg | ece | cwr) { fin:0, syn:1, rst:2, psh:3, ack:4, urg:5, ece:6, cwr:7 } }TCP flags of the packet: fin, syn, rst, psh, ack, urg, ece or cwr.
datastringContent of the captured packet in hexadecimal format.