I have three separate communications between hosts that I want to be able to filter out from our packet decoder.
I cannot for the life of me figure out the correct BPF syntax to make that happen.
I end up usually filtering nothing, or everything.
I've trying to filter the following out.
anything on vlan300
192.168.30.12 > 10.21.32.90:902
18.104.22.168 > 192.168.30.20:10566
I dont want to filter out the whole host traffic, just the specific communication on a specific port (eg. backup traffic).
Does anyone have experience in writing BPF?